Back

HIGH

Honeywell SoftMaster Uncontrolled Search Path Element

Published Sep 16, 2022

Description

If an attacker manages to trick a valid user into loading a malicious DLL, the attacker may be able to achieve code execution in Honeywell SoftMaster version 4.51 application’s context and permissions.

Affected products

Remediation

Vendor solution

Honeywell has released firmware update packages for the affected products on their website. More information can be found in the Honeywell Security Notification SN2022-08-31 01 SoftMaster-R4.7

Weaknesses (1)

References (3)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner icscert
Published Sep 16, 2022
Updated Apr 16, 2025
Reserved Jul 6, 2022

CISA Vulnrichment

Updated Apr 16, 2025

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner icscert
Published Sep 16, 2022
Updated Apr 16, 2025

GitHub

No data