In multiple products of WAGO, a vulnerability allows an unauthenticated, remote attacker to create new users and change the device configuration which can result in unintended behavior, Denial of Service, and full system compromise.
id: CVE-2023-1698
info:
name: WAGO - Remote Command Execution
author: xianke
severity: critic
...