CVE-2016-8567: Siemens Sicam Pas/pqs

Critical severity, CVSS 9.8. EPSS: 1.8% chance of exploitation in the next 30 days.

An issue was discovered in Siemens SICAM PAS before 8.00. A factory account with hard-coded passwords is present in the SICAM PAS installations. Attackers might gain privileged access to the database over Port 2638/TCP.

Affected products

  • Siemens Sicam Pas/pqs: before 8.00 (fixed in 8.00)

Published 2017-02-13. Last modified 2026-06-17.