Vulnerability Details CVE-2023-40707
There are no requirements for setting a complex password in the built-in web server of the SNAP PAC S1 Firmware version R10.3b, which could allow for a successful brute force attack if users don't set up complex credentials.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 18.2%
CVSS Severity
CVSS v3 Score 8.6
Products affected by CVE-2023-40707
-
cpe:2.3:h:opto22:snap_pac_s1:-
-
cpe:2.3:o:opto22:snap_pac_s1_firmware:r10.3b