Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 08 Sep 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 08 Sep 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Server‑Side Authorization Bypass in Reyrolle 7SR5 Web Interface Enabling Privilege Escalation |
Tue, 08 Sep 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). Server-side authorization checks in the web-based management interface are not properly enforced, allowing role-based access control (RBAC) restrictions to be bypassed through manipulation of request data. This could allow an authenticated, low-privileged remote attacker to escalate privileges to an administrative level. | |
| Weaknesses | CWE-288 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: siemens
Published:
Updated: 2026-09-08T12:24:41.707Z
Reserved: 2026-07-14T16:24:23.430Z
Link: CVE-2026-62650
Updated: 2026-09-08T12:24:36.226Z
Status : Deferred
Published: 2026-09-08T09:18:17.213
Modified: 2026-09-08T18:41:55.127
Link: CVE-2026-62650
No data.
OpenCVE Enrichment
Updated: 2026-09-08T09:30:07Z