Remote Code Execution Vulnerability in Siemens SIMATIC WinCC and PCS 7
CVE-2016-9160
Key Information:
- Vendor
Siemens
- Vendor
- CVE Published:
- 17 December 2016
What is CVE-2016-9160?
A vulnerability in Siemens SIMATIC WinCC and PCS 7 allows remote attackers to potentially crash an ActiveX component or access portions of application memory, typically by tricking users into clicking on malicious links. The issue affects environments using versions prior to the updates provided by Siemens.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SIEMENS SIMATIC WinCC (All < SIMATIC WinCC V7.2) and SIEMENS SIMATIC PCS 7 (All < SIMATIC PCS 7 V8.0 SP1) SIEMENS SIMATIC WinCC (All versions < SIMATIC WinCC V7.2) and SIEMENS SIMATIC PCS 7 (All versions < SIMATIC PCS 7 V8.0 SP1)
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved