CVE-2023-40707: OPTO22 Snap Pac s1 Firmware

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

There are no requirements for setting a complex password in the built-in web server of the SNAP PAC S1 Firmware version R10.3b, which could allow for a successful brute force attack if users don't set up complex credentials.

Affected products

  • OPTO22 Snap Pac s1 Firmware: version r10.3b only

Published 2023-08-24. Last modified 2026-06-17.