CVE-2016-7960: Siemens SIMATIC Step 7

Low severity, CVSS 2.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Siemens SIMATIC STEP 7 (TIA Portal) before 14 uses an improper format for managing TIA project files during version updates, which makes it easier for local users to obtain sensitive configuration information via unspecified vectors.

Affected products

  • Siemens SIMATIC Step 7: up to and including 13.010

Published 2016-10-13. Last modified 2026-06-17.