CVE-2023-40706: OPTO22 Snap Pac s1 Firmware

Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.

There is no limit on the number of login attempts in the web server for the SNAP PAC S1 Firmware version R10.3b. This could allow for a brute-force attack on the built-in web server login.

Affected products

  • OPTO22 Snap Pac s1 Firmware: version r10.3b only

Published 2023-08-24. Last modified 2026-06-17.