« Volver al listado

Reyrolle

Reyrolle 7sr5: vulnerabilidades y CVE

Reyrolle 7sr5 tiene 9 vulnerabilidades publicadas, 9 de ellas en los últimos 12 meses. 3 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE9
Últimos 12 meses9
Críticas3
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-62654Alta (7)0.16%—8 sept 2026
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A special maintenance mode can be activated via a physical key sequence during device boot, in which the device downloads and executes program…
CVE-2026-62653Alta (7)0.28%—8 sept 2026
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The input received over a proprietary communication protocol that is exposed when the device is placed into a special firmware-update mode is…
CVE-2026-62652Media (6.9)0.34%—8 sept 2026
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The device firmware contains binaries from which debugging symbols have not been removed. This could allow an unauthenticated attacker with…
CVE-2026-62650Alta (8.7)0.57%—8 sept 2026
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). Server-side authorization checks in the web-based management interface are not properly enforced, allowing role-based access control (RBAC)…
CVE-2026-62649Alta (8.7)0.57%—8 sept 2026
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The web server does not properly limit or manage system resources when processing a high volume of concurrent HTTP requests. This could allow…
CVE-2026-62648Alta (8.7)0.57%—8 sept 2026
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The length of the URL component contained in pre-authenticated HTTP messages is not properly validated before appending additional data to it,…
CVE-2026-62647Crítica (9.3)0.56%—8 sept 2026
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A random number generator is used to generate security-relevant values (such as session identifiers used for authentication purposes) that is…
CVE-2026-62646Crítica (9.1)0.51%—8 sept 2026
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A session identifier is generated using an algorithm with insufficient randomness, resulting in a token with low entropy that can be predicted…
CVE-2026-62645Crítica (9.3)0.65%—8 sept 2026
A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). Information is exposed through the web interface that can be used to calculate the current and past session ID numbers. This could allow an…

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1190 Exploit Public-Facing Application5
  2. T1078 Valid Accounts2
  3. T1091 Replication Through Removable Media2
  4. T1059 Command and Scripting Interpreter1
  5. T1068 Exploitation for Privilege Escalation1
  6. T1078.001 Default Accounts1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.