Vulnerabilities > Honeywell > Softmaster

DATE CVE VULNERABILITY TITLE RISK
2022-09-16 CVE-2022-2332 Incorrect Permission Assignment for Critical Resource vulnerability in Honeywell Softmaster 4.51
A local unprivileged attacker may escalate to administrator privileges in Honeywell SoftMaster version 4.51, due to insecure permission assignment.
local
low complexity
honeywell CWE-732
7.8
2022-09-16 CVE-2022-2333 Uncontrolled Search Path Element vulnerability in Honeywell Softmaster 4.51
If an attacker manages to trick a valid user into loading a malicious DLL, the attacker may be able to achieve code execution in Honeywell SoftMaster version 4.51 application’s context and permissions.
local
low complexity
honeywell CWE-427
7.8