Uploaded image for project: 'JBoss BRMS Platform'
  1. JBoss BRMS Platform
  2. RHBRMS-3075

[GSS](6.4.z) Business-central maven artifacts available at maven2wb without authorization

    Details

      Description

      There is a security issue regarding downloading from BRMS Maven repository:

      wget http://localhost:8080/business-central/maven2/org/guvnor/guvnor-asset-mgmt-project/6.5.0.Final-redhat-19/guvnor-asset-mgmt-project-6.5.0.Final-redhat-19.jar
      

      returns 401 response -> ok

      wget http://localhost:8080/business-central/maven2wb/org/guvnor/guvnor-asset-mgmt-project/6.5.0.Final-redhat-19/guvnor-asset-mgmt-project-6.5.0.Final-redhat-19.jar
      

      returns 22 response and the requested file -> not ok

        Gliffy Diagrams

          Attachments

            Issue Links

              Activity

                People

                • Assignee:
                  Rikkola Toni Rikkola
                  Reporter:
                  mputz Martin Weiler
                  Tester:
                  Barbora Siskova
                • Votes:
                  0 Vote for this issue
                  Watchers:
                  5 Start watching this issue

                  Dates

                  • Created:
                    Updated:
                    Resolved: