Our takeSiemens patched multiple vulnerabilities in Reyrolle 7SR5 relays before V2.70. Update to the latest version if you run these protection relays.Cyber Resilience desk
Sources (1)
- cisa_ics · cisa_ics
What this means for you — Security leader:Siemens has released V2.70 for Reyrolle 7SR5 protective relays to address six vulnerabilities (CVEs 2024-42384 through 2026-6264). Update immediately if you operate these devices in substations or generation sites.
What this means for you — Lean IT orgs:If you run Siemens Reyrolle 7SR5 protective relays in your facility, update them to version 2.70 or newer as soon as possible.
What this means for you — MSP:Check client environments for Siemens Reyrolle 7SR5 relays running before V2.70 and schedule updates to the latest version; this affects OT/ICS environments with protective relays.
What this means for you — Researcher:Siemens Reyrolle 7SR5 relays prior to V2.70 contain six vulnerabilities; full details are in the linked CISA ICS advisory.