Role-Based Access Control Bypass in Reyrolle 7SR5 by Siemens
CVE-2026-62650
8.7HIGH
What is CVE-2026-62650?
A vulnerability exists in Reyrolle 7SR5 where the server-side authorization checks in the web management interface are improperly enforced. This flaw allows an authenticated, low-privileged remote attacker to manipulate request data, effectively bypassing role-based access control (RBAC) restrictions. Consequently, this enables the attacker to escalate their privileges to an administrative level, posing a significant security risk.
Affected Version(s)
Reyrolle 7SR5 0