An unauthenticated remote attacker can abuse unsafe sscanf calls within the check_cookie() function to write arbitrary data into fixed-size stack buffers which leads to full device compromise.
| Software | From | Fixed in |
|---|---|---|
| wago / 0852-1328_firmware | - | 02.64 |
| wago / 0852-1322_firmware | - | 02.64 |