Description
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). Server-side authorization checks in the web-based management interface are not properly enforced, allowing role-based access control (RBAC) restrictions to be bypassed through manipulation of request data. This could allow an authenticated, low-privileged remote attacker to escalate privileges to an administrative level.
Published: 2026-09-08
Score: 8.7 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

Server‑side authorization checks in the Reyrolle 7SR5 web‑based management interface are not properly enforced. This flaw lets a malicious user manipulate request data to bypass role‑based access control (RBAC), enabling a low‑privileged authenticated user to elevate privileges to an administrative level. The impact is pure privilege escalation, compromising confidentiality, integrity, and availability of the device for the attacker who can then perform any action permitted to an administrator.

Affected Systems

Siemens Reyrolle 7SR5 devices running any software version older than V2.70 are affected. Users of earlier releases should verify their firmware version and plan an update as soon as possible.

Risk and Exploitability

The CVSS base score of 8.7 classifies this flaw as high severity. No EPSS score is available, and the vulnerability is not listed in the CISA KEV catalog, indicating a lack of public exploit evidence at this time. The attack requires the attacker to be authenticated with a low‑privilege account, after which they can craft specific web requests to exploit the missing server‑side authorization. Because the flaw is in the web interface, it can be exploited remotely over the network if the interface is reachable.

Generated by OpenCVE AI on September 8, 2026 at 09:24 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the Reyrolle 7SR5 firmware to version V2.70 or later, which removes the server‑side authorization bypass
  • Restrict external access to the web‑based management interface, allowing only trusted network segments and/or VPN connections
  • Verify that RBAC settings are properly configured and that user accounts possess the minimum privileges required for their roles
  • Conduct periodic vulnerability scans against web interfaces to detect any regression of access control enforcement

Generated by OpenCVE AI on September 8, 2026 at 09:24 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 08 Sep 2026 09:45:00 +0000

Type Values Removed Values Added
Title Server‑Side Authorization Bypass in Reyrolle 7SR5 Web Interface Enabling Privilege Escalation

Tue, 08 Sep 2026 08:30:00 +0000

Type Values Removed Values Added
Description A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). Server-side authorization checks in the web-based management interface are not properly enforced, allowing role-based access control (RBAC) restrictions to be bypassed through manipulation of request data. This could allow an authenticated, low-privileged remote attacker to escalate privileges to an administrative level.
Weaknesses CWE-288
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published:

Updated: 2026-09-08T08:11:32.013Z

Reserved: 2026-07-14T16:24:23.430Z

Link: CVE-2026-62650

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-08T09:18:17.213

Modified: 2026-09-08T09:18:17.213

Link: CVE-2026-62650

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-08T09:30:07Z

Weaknesses
  • CWE-288

    Authentication Bypass Using an Alternate Path or Channel