CVE-2023-24020: Snapav Wattbox Wb-300-IP-3 Firmware

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Snap One Wattbox WB-300-IP-3 versions WB10.9a17 and prior could bypass the brute force protection, allowing multiple attempts to force a login.

Affected products

  • Snapav Wattbox Wb-300-IP-3 Firmware: up to and including wb10.9a17

Published 2023-01-30. Last modified 2026-06-17.