CVE-2024-9342EPSS p33.2%
CVE-2024-9342CVE-2024-9342
eclipse / glassfish
Description
In Eclipse GlassFish versions before 8.0.3 it is possible to perform Login Brute Force attacks as there is no limitation in the number of failed login attempts. GlassFish 8.0.3 adds automatic attack protection documented in https://glassfish.org/docs/latest/security-guide.html#brute-force-attack-protection .
Scoring
| CVSS | 9.8 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.40% probability of exploitation · percentile 33.2% · 2026-08-03T12:00:16Z |
| Last modified | 2026-06-18 |