Vulnerability Description
In Eclipse GlassFish version 7.0.16 or earlier it is possible to perform Login Brute Force attacks as there is no limitation in the number of failed login attempts.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Eclipse | Glassfish | 7.0.16 |
Related Weaknesses (CWE)
References
FAQ
What is CVE-2024-9342?
CVE-2024-9342 is a vulnerability with a CVSS score of 9.8 (CRITICAL). In Eclipse GlassFish version 7.0.16 or earlier it is possible to perform Login Brute Force attacks as there is no limitation in the number of failed login attempts.
How severe is CVE-2024-9342?
CVE-2024-9342 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2024-9342?
Check the references section above for vendor advisories and patch information. Affected products include: Eclipse Glassfish.