CVE-2026-62645: Siemens Reyrolle 7sr5

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). Information is exposed through the web interface that can be used to calculate the current and past session ID numbers. This could allow an attacker to bypass the authentication and gain unauthorized access to the device.

Affected products

  • Siemens Reyrolle 7sr5: before V2.70 (fixed in V2.70)

Published 2026-09-08. Last modified 2026-09-08.