CVE-2015-1009
01.08.2015, 01:59
Schneider Electric InduSoft Web Studio before 7.1.3.5 Patch 5 and Wonderware InTouch Machine Edition through 7.1 SP3 Patch 4 use cleartext for project-window password storage, which allows local users to obtain sensitive information by reading a file.Enginsight
| Vendor | Product | Version |
|---|---|---|
| indusoft | web_studio | 𝑥 ≤ 7.1.3.5 |
| wonderware | intouch | 𝑥 ≤ 7.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration