CVE-2026-62645
Last modified
CVE-2026-62645 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). Information is exposed through the web interface that can be used to calculate the current and past session ID numbers. EPSS estimates a 0.35% chance of exploitation in the next 30 days.
Description
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). Information is exposed through the web interface that can be used to calculate the current and past session ID numbers. This could allow an attacker to bypass the authentication and gain unauthorized access to the device.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Siemens | Reyrolle 7SR5 | < V2.70 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-62645?
How severe is CVE-2026-62645?
How do I fix CVE-2026-62645?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-6264A critical vulnerability in the Talend JobServer and Talend …9.8
- CVE-2026-62640Vulnerability in the Oracle Reports Developer product of Ora…9.8
- CVE-2026-62641In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, t…6.5
- CVE-2026-62642In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, a…6.5
- CVE-2026-62643In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, i…10
- CVE-2026-62644In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, t…9.8
- CVE-2026-62646A vulnerability has been identified in Reyrolle 7SR5 (All ve…7.4
- CVE-2026-62647A vulnerability has been identified in Reyrolle 7SR5 (All ve…7.4
- CVE-2026-62648A vulnerability has been identified in Reyrolle 7SR5 (All ve…7.5
- CVE-2026-62649A vulnerability has been identified in Reyrolle 7SR5 (All ve…7.5
- CVE-2026-6265Insecure preserved inherited permissions vulnerability in Ce…8.8
- CVE-2026-62650A vulnerability has been identified in Reyrolle 7SR5 (All ve…8.8
Are you affected by CVE-2026-62645?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
