CVE-2024-9342EPSS p32.0%
CVE-2024-9342CVE-2024-9342
eclipse / glassfish
Description
In Eclipse GlassFish versions before 8.0.3 it is possible to perform Login Brute Force attacks as there is no limitation in the number of failed login attempts. GlassFish 8.0.3 adds automatic attack protection documented in https://glassfish.org/docs/latest/security-guide.html#brute-force-attack-protection .
Scoring
| CVSS | 9.8 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.40% probability of exploitation · percentile 32.0% · 2026-06-19T12:03:05Z |
| Last modified | 2026-06-18 |