Schneider Electric Wonderware Information Server (WIS) Portal 4.0 SP1 through 5.5 uses weak encryption, which allows remote attackers to obtain sensitive information by reading a credential file.
Metrics
Affected Vendors & Products
References
History
Wed, 18 Feb 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Schneider Electric
Schneider Electric wonderware Information Server Portal |
|
| CPEs | cpe:2.3:a:schneider_electric:wonderware_information_server_portal:4.0_sp1:*:*:*:*:*:*:* cpe:2.3:a:schneider_electric:wonderware_information_server_portal:4.5:*:*:*:*:*:*:* cpe:2.3:a:schneider_electric:wonderware_information_server_portal:5.0:*:*:*:*:*:*:* cpe:2.3:a:schneider_electric:wonderware_information_server_portal:5.5:*:*:*:*:*:*:* |
|
| Vendors & Products |
Schneider Electric
Schneider Electric wonderware Information Server Portal |
Fri, 31 Oct 2025 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Schneider Electric Wonderware Inadequate Encryption Strength | |
| Weaknesses | CWE-326 | |
| References |
|
Status: PUBLISHED
Assigner: icscert
Published: 2014-08-28T01:00:00.000Z
Updated: 2025-10-31T23:11:04.615Z
Reserved: 2014-03-13T00:00:00.000Z
Link: CVE-2014-2380
No data.
Status : Deferred
Published: 2014-08-28T01:55:03.123
Modified: 2025-11-01T00:15:32.230
Link: CVE-2014-2380
No data.