Authentication Bypass in Reyrolle 7SR5 by Siemens
CVE-2026-62645

9.3CRITICAL

Key Information:

Vendor

Siemens

Vendor
CVE Published:
8 September 2026

What is CVE-2026-62645?

A vulnerability in Reyrolle 7SR5 devices allows attackers to exploit the web interface to gain access to session ID numbers, both current and past. This information leakage can lead to unauthorized device access by bypassing standard authentication measures, potentially compromising the security of the systems using this device.

Affected Version(s)

Reyrolle 7SR5 0

References

CVSS V4

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.