Description
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A session identifier is generated using an algorithm with insufficient randomness, resulting in a token with low entropy that can be predicted or brute-forced within a feasible number of attempts. This could allow an unauthenticated remote attacker to derive valid session identifiers and bypass authentication.
Published: 2026-09-08
Score: 9.1 Critical
EPSS: < 1% Very Low
KEV: No
Impact: Authentication Bypass via Low Entropy Session IDs
Action: Patch
AI Analysis

Impact

An attacker can predict or brute‑force the session identifiers used by Reyrolle 7SR5, enabling a remote, unauthenticated user to inject a valid session cookie and bypass the login mechanism. The flaw originates from a deterministic algorithm that produces tokens with insufficient entropy, making the token guessable in a realistic number of attempts. Once an attacker obtains a valid session identifier, they can act with the privileges of the authenticated user. The weakness corresponds to CWE‑331 – Insufficient Entropy.

Affected Systems

All versions of Siemens Reyrolle 7SR5 prior to V2.70, as specified by the vendor.

Risk and Exploitability

The CVSS score of 9.1 indicates a high‑severity vulnerability. EPSS is not available, but the nature of the attack vector makes exploitation feasible for a motivated adversary. The vulnerability is not currently listed in CISA’s KEV catalog. Attackers with network access to the system can leverage the predictable session token to gain unauthorized control without needing credentials. Consequently, the risk remains high and exploitation is likely if no countermeasures are applied.

Generated by OpenCVE AI on September 8, 2026 at 10:21 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the vendor‑released firmware update to version 2.70 or later to replace the weak session identifier generator.
  • Restrict remote access to the system’s administration interface using firewalls or VPNs, limiting exposure to trusted networks.
  • Enable logging of all authentication activity and monitor for anomalous session patterns to detect potential exploitation attempts.

Generated by OpenCVE AI on September 8, 2026 at 10:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 10 Sep 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 08 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Siemens
Siemens reyrolle 7sr5
Vendors & Products Siemens
Siemens reyrolle 7sr5

Tue, 08 Sep 2026 10:45:00 +0000

Type Values Removed Values Added
Title Low-Entropy Session Identifier Bypass in Siemens Reyrolle 7SR5

Tue, 08 Sep 2026 08:30:00 +0000

Type Values Removed Values Added
Description A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A session identifier is generated using an algorithm with insufficient randomness, resulting in a token with low entropy that can be predicted or brute-forced within a feasible number of attempts. This could allow an unauthenticated remote attacker to derive valid session identifiers and bypass authentication.
Weaknesses CWE-331
References
Metrics cvssV3_1

{'score': 7.4, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N'}

cvssV4_0

{'score': 9.1, 'vector': 'CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Siemens Reyrolle 7sr5
cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published:

Updated: 2026-09-10T18:19:25.743Z

Reserved: 2026-07-14T16:24:23.430Z

Link: CVE-2026-62646

cve-icon Vulnrichment

Updated: 2026-09-10T18:19:21.570Z

cve-icon NVD

Status : Deferred

Published: 2026-09-08T09:18:16.710

Modified: 2026-09-10T19:17:31.797

Link: CVE-2026-62646

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-08T20:35:38Z

Weaknesses