Maybe I haven't been clear enough: One user cannot login anymore with standard id (the password is rejected), the same standard id can login into another db. Another user from the same DB can.
What I am afraid of is that this could happen with our clients, and I could not figure the way out. I my case this was a demo db and another user could change my user's password , so I could log in.