Executive brief
An unauthenticated remote attacker can abuse unsafe sscanf calls within the check_account() function to write arbitrary data into fixed-size stack buffers which leads to full device compromise.
Affected products
- wago 0852-1322
- wago 0852-1328_firmware
- wago 0852-1328
- wago 0852-1322_firmware