Unrated severityNVD Advisory· Published Aug 1, 2015· Updated May 6, 2026
CVE-2015-1009
CVE-2015-1009
Description
Schneider Electric InduSoft Web Studio before 7.1.3.5 Patch 5 and Wonderware InTouch Machine Edition through 7.1 SP3 Patch 4 use cleartext for project-window password storage, which allows local users to obtain sensitive information by reading a file.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- download.schneider-electric.com/filesnvdVendor Advisory
- ics-cert.us-cert.gov/advisories/ICSA-15-211-01nvdThird Party AdvisoryUS Government Resource
- gcsresource.invensys.com/support/docs/_securitybulletins/Security_bulletin_LFSEC00000110.pdfnvd
News mentions
0No linked articles in our index yet.