Here is an example of how to track down jars signed by different certificates

java -jar jnlp2shell-1.0-SNAPSHOT.jar .
cd http
find . -name "*.jar" -exec mkdir "{}.d" ";"
find . -name "*.jar" -exec unzip -d "{}.d" "{}" META-INF/CONCORD.RSA ";"
find . -name CONCORD.RSA -exec cmp -n 3373 "{}" ";"

Then look for differences

fixing this my making a new version of the file:
copy the old file
change the signature
update all the jnlps which point to this:

sudo /usr/java/jdk1.5.0_15/bin/jarsigner -keystore /home/maven/cc-keystore-2006 sensor-vernier__V0.1.0-20090502.033056-176.jar concord
sudo grep -l -R "0.1.0-20090502.033056-175" . | sudo xargs -n 1 sed -i 's/0.1.0-20090502.033056-175/0.1.0-20090502.033056-176/g'
