VulnSea

reyrolle_7sr5 vulnerabilities

CVEs whose affected-version data names the reyrolle_7sr5 package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

9 CVEsRSS

CVE-2026-62654Medium· 6.8
2w ago

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70)

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A special maintenance mode can be activated via a physical key sequence during device boot, in which the device downloads and executes program code from a netwo…

SunlitSiemens · Reyrolle 7SR5EPSS 0.11%via NVD
CVE-2026-62653Medium· 6.8
2w ago

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70)

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The input received over a proprietary communication protocol that is exposed when the device is placed into a special firmware-update mode is not properly valid…

SunlitSiemens · Reyrolle 7SR5EPSS 0.18%via NVD
CVE-2026-62652Medium· 5.3
2w ago

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70)

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The device firmware contains binaries from which debugging symbols have not been removed. This could allow an unauthenticated attacker with access to the public…

SunlitSiemens · Reyrolle 7SR5EPSS 0.21%via NVD
CVE-2026-62650High· 8.8
2w ago

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70)

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). Server-side authorization checks in the web-based management interface are not properly enforced, allowing role-based access control (RBAC) restrictions to be b…

TwilightSiemens · Reyrolle 7SR5EPSS 0.32%via NVD
CVE-2026-62649High· 7.5
2w ago

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70)

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The web server does not properly limit or manage system resources when processing a high volume of concurrent HTTP requests. This could allow an unauthenticated…

TwilightSiemens · Reyrolle 7SR5EPSS 0.33%via NVD
CVE-2026-62648High· 7.5
2w ago

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70)

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The length of the URL component contained in pre-authenticated HTTP messages is not properly validated before appending additional data to it, resulting in an o…

TwilightSiemens · Reyrolle 7SR5EPSS 0.33%via NVD
CVE-2026-62647High· 7.4
2w ago

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70)

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A random number generator is used to generate security-relevant values (such as session identifiers used for authentication purposes) that is not initialized wi…

TwilightSiemens · Reyrolle 7SR5EPSS 0.34%via NVD
CVE-2026-62646High· 7.4
2w ago

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70)

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A session identifier is generated using an algorithm with insufficient randomness, resulting in a token with low entropy that can be predicted or brute-forced w…

TwilightSiemens · Reyrolle 7SR5EPSS 0.32%via NVD
CVE-2026-62645Critical· 9.8
2w ago

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70)

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). Information is exposed through the web interface that can be used to calculate the current and past session ID numbers. This could allow an attacker to bypass t…

MidnightSiemens · Reyrolle 7SR5EPSS 0.35%via NVD
reyrolle_7sr5 vulnerabilities (CVEs) · VulnSea