SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-62653

MEDIUM · CVSS 6.8 EPSS 0.18%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A memory corruption vulnerability exists in Reyrolle 7SR5 devices running versions prior to V2.70, triggered by improperly validated input over a proprietary communication protocol during firmware updates. This flaw allows an unauthenticated attacker with physical access to crash the device and potentially execute arbitrary code. Organizations using these devices should prioritize patching to mitigate risks associated with unauthorized access and potential exploitation.

CVE
CVE-2026-62653
Severity
MEDIUM
CVSS
6.8
EPSS
0.18%

Original NVD Description

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The input received over a proprietary communication protocol that is exposed when the device is placed into a special firmware-update mode is not properly validated, resulting in a memory corruption condition. This could allow an unauthenticated attacker with physical access to the device to cause a crash and potentially execute arbitrary code on the device.