{"api_version":"v1","generated_at":"2026-10-10T04:15:00+00:00","product":{"cve_count":5,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-schneider-electric-wonderware-information-server-portal-3b7d88bcb385","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Wonderware Information Server Portal","next_cursor":null,"observations":[{"affected":"Wonderware Information Server Portal: 4.0 SP1, 4.5, 5.0, 5.5","affected_versions_present":true,"cve_id":"CVE-2014-5399","cve_url":"https://cve.blacktree.nl/cve/CVE-2014-5399","fixed":"Schneider Electric has created an update for WIS web pages and; components to address the vulnerabilities listed in this advisory.; Customers using all versions of WIS are affected and should upgrade to; WIS Version 5.5 and then apply the security update.; Customers using the affected versions of WIS should set the security; level settings in the Internet browser to \u201cMedium \u2013 High\u201d to minimize; the risks presented by these vulnerabilities. In addition, the; Wonderware Information Server Portal can be configured to use HTTPS that; will require additional steps as documented in the products user; documentation.; Schneider Electric has released a security bulletin titled \u201cMultiple; Vulnerabilities in Wonderware Information Server LFSEC00000102\u201d to","last_modified":"2025-10-31T23:17:37.919Z","patch_url":"https://www.cisa.gov/news-events/ics-advisories/icsa-14-238-02","primary_source":"","published":"2014-08-28T01:00:00.000Z"},{"affected":"Wonderware Information Server Portal: 4.0 SP1, 4.5, 5.0, 5.5","affected_versions_present":true,"cve_id":"CVE-2014-5398","cve_url":"https://cve.blacktree.nl/cve/CVE-2014-5398","fixed":"Schneider Electric has created an update for WIS web pages and; components to address the vulnerabilities listed in this advisory.; Customers using all versions of WIS are affected and should upgrade to; WIS Version 5.5 and then apply the security update.; Customers using the affected versions of WIS should set the security; level settings in the Internet browser to \u201cMedium \u2013 High\u201d to minimize; the risks presented by these vulnerabilities. In addition, the; Wonderware Information Server Portal can be configured to use HTTPS that; will require additional steps as documented in the products user; documentation.; Schneider Electric has released a security bulletin titled \u201cMultiple; Vulnerabilities in Wonderware Information Server LFSEC00000102\u201d to","last_modified":"2025-10-31T23:16:04.348Z","patch_url":"https://www.cisa.gov/news-events/ics-advisories/icsa-14-238-02","primary_source":"","published":"2014-08-28T01:00:00.000Z"},{"affected":"Wonderware Information Server Portal: 4.0 SP1, 4.5, 5.0, 5.5","affected_versions_present":true,"cve_id":"CVE-2014-5397","cve_url":"https://cve.blacktree.nl/cve/CVE-2014-5397","fixed":"Schneider Electric has created an update for WIS web pages and; components to address the vulnerabilities listed in this advisory.; Customers using all versions of WIS are affected and should upgrade to; WIS Version 5.5 and then apply the security update.; Customers using the affected versions of WIS should set the security; level settings in the Internet browser to \u201cMedium \u2013 High\u201d to minimize; the risks presented by these vulnerabilities. In addition, the; Wonderware Information Server Portal can be configured to use HTTPS that; will require additional steps as documented in the products user; documentation.; Schneider Electric has released a security bulletin titled \u201cMultiple; Vulnerabilities in Wonderware Information Server LFSEC00000102\u201d to","last_modified":"2025-10-31T23:14:04.849Z","patch_url":"https://www.cisa.gov/news-events/ics-advisories/icsa-14-238-02","primary_source":"","published":"2014-08-28T01:00:00.000Z"},{"affected":"Wonderware Information Server Portal: 4.0 SP1, 4.5, 5.0, 5.5","affected_versions_present":true,"cve_id":"CVE-2014-2381","cve_url":"https://cve.blacktree.nl/cve/CVE-2014-2381","fixed":"Schneider Electric has created an update for WIS web pages and; components to address the vulnerabilities listed in this advisory.; Customers using all versions of WIS are affected and should upgrade to; WIS Version 5.5 and then apply the security update.; Customers using the affected versions of WIS should set the security; level settings in the Internet browser to \u201cMedium \u2013 High\u201d to minimize; the risks presented by these vulnerabilities. In addition, the; Wonderware Information Server Portal can be configured to use HTTPS that; will require additional steps as documented in the products user; documentation.; Schneider Electric has released a security bulletin titled \u201cMultiple; Vulnerabilities in Wonderware Information Server LFSEC00000102\u201d to","last_modified":"2025-10-31T23:19:54.894Z","patch_url":"https://www.cisa.gov/news-events/ics-advisories/icsa-14-238-02","primary_source":"","published":"2014-08-28T01:00:00.000Z"},{"affected":"Wonderware Information Server Portal: 4.0 SP1, 4.5, 5.0, 5.5","affected_versions_present":true,"cve_id":"CVE-2014-2380","cve_url":"https://cve.blacktree.nl/cve/CVE-2014-2380","fixed":"Schneider Electric has created an update for WIS web pages and; components to address the vulnerabilities listed in this advisory.; Customers using all versions of WIS are affected and should upgrade to; WIS Version 5.5 and then apply the security update.; Customers using the affected versions of WIS should set the security; level settings in the Internet browser to \u201cMedium \u2013 High\u201d to minimize; the risks presented by these vulnerabilities. In addition, the; Wonderware Information Server Portal can be configured to use HTTPS that; will require additional steps as documented in the products user; documentation.; Schneider Electric has released a security bulletin titled \u201cMultiple; Vulnerabilities in Wonderware Information Server LFSEC00000102\u201d to","last_modified":"2025-10-31T23:11:04.615Z","patch_url":"https://www.cisa.gov/news-events/ics-advisories/icsa-14-238-02","primary_source":"","published":"2014-08-28T01:00:00.000Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"Schneider Electric"}}
