VYPR

7SR5

by Reyrolle

CVEs (5)

  • CVE-2026-62645CriSep 8, 2026
    risk 0.64cvss 9.8epss

    A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). Information is exposed through the web interface that can be used to calculate the current and past session ID numbers. This could allow an attacker to bypass the authentication and gain unauthorized…

  • CVE-2026-62649HigSep 8, 2026
    risk 0.49cvss 7.5epss

    A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The web server does not properly limit or manage system resources when processing a high volume of concurrent HTTP requests. This could allow an unauthenticated remote attacker to cause the entire…

  • CVE-2026-62648HigSep 8, 2026
    risk 0.49cvss 7.5epss

    A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The length of the URL component contained in pre-authenticated HTTP messages is not properly validated before appending additional data to it, resulting in an out-of-bounds write condition in memory.…

  • CVE-2026-62647HigSep 8, 2026
    risk 0.48cvss 7.4epss

    A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A random number generator is used to generate security-relevant values (such as session identifiers used for authentication purposes) that is not initialized with a True Random Number Generator (TRNG),…

  • CVE-2026-62653MedSep 8, 2026
    risk 0.44cvss 6.8epss

    A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The input received over a proprietary communication protocol that is exposed when the device is placed into a special firmware-update mode is not properly validated, resulting in a memory corruption…