CVE-2016-9157: Siemens Sicam Pas/pqs

Critical severity, CVSS 9.8. EPSS: 3.3% chance of exploitation in the next 30 days.

A vulnerability in Siemens SICAM PAS (all versions before V8.09) could allow a remote attacker to cause a Denial of Service condition and potentially lead to unauthenticated remote code execution by sending specially crafted packets to port 19234/TCP.

Affected products

  • Siemens Sicam Pas/pqs: before 8.09 (fixed in 8.09)

Published 2016-12-05. Last modified 2026-06-17.