CVE-2013-0253 Information
Feb 14, 2021
cve
Description
The default configuration of Apache Maven 3.0.4 when using Maven Wagon 2.1 disables SSL certificate checks which allows remote attackers to spoof servers via a man-in-the-middle (MITM) attack.
Reference
http://rhn.redhat.com/errata/RHSA-2013-0700.html https://bugzilla.redhat.com/show_bug.cgi?id=917084 https://lists.apache.org/thread.html/ff8dcfe29377088ab655fda9d585dccd5b1f07fabd94ae84fd60a7f8@3Ccommits.pulsar.apache.org3E https://maven.apache.org/security.html
Share on: