CVE-2016-7960

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
13/10/2016
Last modified:
12/04/2025

Description

Siemens SIMATIC STEP 7 (TIA Portal) before 14 uses an improper format for managing TIA project files during version updates, which makes it easier for local users to obtain sensitive configuration information via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:siemens:simatic_step_7:*:*:*:*:*:*:*:* 13.010 (including)