The number of login attempts is not limited. This could allow an attacker to perform a brute force on HTTP basic authentication.
The number of login attempts is not limited. This could allow an attacker to perform a brute force on HTTP basic authentication.