1.7
CVSSv2

CVE-2015-1009

Published: 01/08/2015 Updated: 04/08/2015
CVSS v2 Base Score: 1.7 | Impact Score: 2.9 | Exploitability Score: 3.1
VMScore: 151
Vector: AV:L/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

Schneider Electric InduSoft Web Studio prior to 7.1.3.5 Patch 5 and Wonderware InTouch Machine Edition up to and including 7.1 SP3 Patch 4 use cleartext for project-window password storage, which allows local users to obtain sensitive information by reading a file.

Vulnerable Product Search on Vulmon Subscribe to Product

indusoft web studio

wonderware intouch