๐Ÿ” CVE Alert

CVE-2026-62653

MEDIUM 6.8
CVSS Score
6.8
EPSS Score
0.0%
EPSS Percentile
0th

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The input received over a proprietary communication protocol that is exposed when the device is placed into a special firmware-update mode is not properly validated, resulting in a memory corruption condition. This could allow an unauthenticated attacker with physical access to the device to cause a crash and potentially execute arbitrary code on the device.

CWE CWE-787
Vendor siemens
Product reyrolle 7sr5
Ecosystems
Industries
IndustrialManufacturing
Published Sep 8, 2026
Last Updated Sep 14, 2026
Stay Ahead of the Next One

Get instant alerts for siemens reyrolle 7sr5

Be the first to know when new medium vulnerabilities affecting siemens reyrolle 7sr5 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Siemens / Reyrolle 7SR5
0 < V2.70

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
cert-portal.siemens.com: https://cert-portal.siemens.com/productcert/html/ssa-142885.html