Description
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A special maintenance mode can be activated via a physical key sequence during device boot, in which the device downloads and executes program code from a network server without verifying its authenticity or integrity. This could allow an attacker with physical access to the device to upload and execute arbitrary, unsigned code.
Published: 2026-09-08
Score: 7 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A special maintenance mode in Reyrolle 7SR5 allows the device to download and run program code from a network server without validating authenticity or integrity. The vulnerability is triggered by a physical key sequence during boot, leading to arbitrary unsigned code execution on the device. The attacker can gain full control, compromising confidentiality, integrity, and availability of the device and any connected systems.

Affected Systems

Siemens Reyrolle 7SR5 devices with firmware versions lower than 2.70 are affected. This includes all variants released before the V2.70 update.

Risk and Exploitability

The CVSS score of 7 indicates high severity. EPSS is not available and the vulnerability is not listed in KEV. The attack requires physical access to the device during startup and knowledge of the maintenance mode key sequence. Once in the maintenance mode, the attacker can deliver and run arbitrary code from any network server that the device can reach.

Generated by OpenCVE AI on September 8, 2026 at 09:22 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the device firmware to Siemens Reyrolle 7SR5 V2.70 or later.
  • Restrict physical access to the device during boot to prevent key sequence activation.
  • Disable or block the maintenance mode key sequence if it is not required for operations.

Generated by OpenCVE AI on September 8, 2026 at 09:22 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 08 Sep 2026 09:45:00 +0000

Type Values Removed Values Added
Title Reyrolle 7SR5 Physical Access Code Execution via Maintenance Mode

Tue, 08 Sep 2026 08:30:00 +0000

Type Values Removed Values Added
Description A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A special maintenance mode can be activated via a physical key sequence during device boot, in which the device downloads and executes program code from a network server without verifying its authenticity or integrity. This could allow an attacker with physical access to the device to upload and execute arbitrary, unsigned code.
Weaknesses CWE-494
References
Metrics cvssV3_1

{'score': 6.8, 'vector': 'CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 7, 'vector': 'CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published:

Updated: 2026-09-08T08:11:35.239Z

Reserved: 2026-07-14T16:24:23.430Z

Link: CVE-2026-62654

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-08T09:18:17.583

Modified: 2026-09-08T09:18:17.583

Link: CVE-2026-62654

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-08T09:30:07Z

Weaknesses
  • CWE-494

    Download of Code Without Integrity Check