Unrated severityNVD Advisory· Published Aug 1, 2015· Updated Jun 17, 2026
CVE-2015-1009
CVE-2015-1009
Description
Schneider Electric InduSoft Web Studio before 7.1.3.5 Patch 5 and Wonderware InTouch Machine Edition through 7.1 SP3 Patch 4 use cleartext for project-window password storage, which allows local users to obtain sensitive information by reading a file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Range: <=7.1 SP3 Patch 4
- Range: <=7.1.3.5 Patch 4
Patches
Vulnerability mechanics
References
3- download.schneider-electric.com/filesnvdVendor Advisory
- ics-cert.us-cert.gov/advisories/ICSA-15-211-01nvdThird Party AdvisoryUS Government Resource
- gcsresource.invensys.com/support/docs/_securitybulletins/Security_bulletin_LFSEC00000110.pdfnvd
News mentions
0No linked articles in our index yet.