SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-62647

HIGH · CVSS 7.4 EPSS 0.34%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A vulnerability exists in Reyrolle 7SR5 versions prior to V2.70, where a poorly initialized random number generator leads to predictable session identifiers used for authentication. This flaw enables unauthenticated remote attackers to potentially impersonate legitimate users, resulting in unauthorized access to the device. Organizations utilizing affected versions should prioritize remediation to mitigate the risk of unauthorized access.

CVE
CVE-2026-62647
Severity
HIGH
CVSS
7.4
EPSS
0.34%

Original NVD Description

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A random number generator is used to generate security-relevant values (such as session identifiers used for authentication purposes) that is not initialized with a True Random Number Generator (TRNG), resulting in a predictable sequence of generated values. This could allow an unauthenticated remote attacker to more easily predict the generated values and impersonate a legitimate authenticated user, potentially gaining unauthorized access to the device.