First published: Tue Sep 13 2022(Updated: )
If an attacker manages to trick a valid user into loading a malicious DLL, the attacker may be able to achieve code execution in Honeywell SoftMaster version 4.51 application’s context and permissions.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Honeywell SoftMaster | =4.51 | |
Honeywell SoftMaster: version 4.51 |
Honeywell has released firmware update packages for the affected products on their website. More information can be found in the Honeywell Security Notification SN2022-08-31 01 SoftMaster-R4.7
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2022-2333.
CVE-2022-2333 has a severity rating of 7.8 (high).
The affected software for CVE-2022-2333 is Honeywell SoftMaster version 4.51.
An attacker can exploit CVE-2022-2333 by tricking a valid user into loading a malicious DLL.
By exploiting CVE-2022-2333, an attacker may be able to achieve code execution in Honeywell SoftMaster version 4.51 application's context and permissions.