In Eclipse GlassFish version 7.0.16 or earlier it is possible to perform Login Brute Force attacks as there is no limitation in the number of failed login attempts.
| Software | From | Fixed in |
|---|---|---|
| eclipse / glassfish | 7.0.16 | 7.0.16.x |
org.glassfish.main.admingui / console-common
|
- | 7.0.25.x |