Skip to main content
HIGH

CVE-2016-8380

CVSS v3

7.3

HIGH

EPSS Score

10.9 %

exploit probability, as of 2026-10-05

CISA KEV

No

known exploited

Exploitation

—

SSVC status

Description

The web server in Phoenix Contact ILC PLCs allows access to read and write PLC variables without authentication.

Technical details

Published
2018-04-05
Exploit-DB
EDB-45590

Frequently asked questions

What is CVE-2016-8380?

The web server in Phoenix Contact ILC PLCs allows access to read and write PLC variables without authentication.

Is CVE-2016-8380 actively exploited?

Active exploitation of CVE-2016-8380 has not been confirmed. Its EPSS score was 10.9% on 2026-10-05, the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2016-8380?

CVE-2016-8380 has a CVSS v3 base score of 7.3 (HIGH severity).

Is CVE-2016-8380 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.

No credit card required · 50 free checks/month · Free API key