CVE-2023-40707

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/08/2023
Last modified:
29/08/2023

Description

There are no requirements for setting a complex password in the built-in web server of the SNAP PAC S1 Firmware version R10.3b, which could allow for a successful brute force attack if users don't set up complex credentials.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:opto22:snap_pac_s1_firmware:r10.3b:*:*:*:*:*:*:*
cpe:2.3:h:opto22:snap_pac_s1:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools