Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 4 min 103 bronnen 1 kritiek 44 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2015-0999

LOW · 2.1 CVSS Gepubliceerd: CWE-200

Beschrijving

Schneider Electric InduSoft Web Studio before 7.1.3.4 SP3 Patch 4 and InTouch Machine Edition 2014 before 7.1.3.4 SP3 Patch 4 store cleartext OPC User credentials in a configuration file, which allows local users to obtain sensitive information by reading this file.

Vendors

Aveva Schneider-electric

Affected products

Aveva Edge Wonderware Intouch 2014

References