Launch Week Day 1: Announcing Security Design Review
UNKNOWN Maven

Eclipse GlassFish is vulnerable to Login Brute Force attacks through unlimited failed login attempts

GHSA-99f7-hp6j-v6q4 · CVE-2024-9342

Published · Modified

Description

In Eclipse GlassFish version 7.0.16 or earlier, it is possible to perform login brute force attacks as there is no limitation on the number of failed login attempts.

Ready to move

Start Securing

Free, no credit card | First findings in minutes