Vulnerabilities (CVE)

Filtered by vendor Honeywell Subscribe
Filtered by product Masmobile Asp.net Services
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-36483 1 Honeywell 2 Masmobile Asp.net Services, Masmobile Classic 2026-02-25 N/A 6.5 MEDIUM
Authorization bypass can be achieved by session ID prediction in MASmobile Classic Android  version 1.16.18 and earlier and MASmobile Classic iOS version 1.7.24 and earlier which allows remote attackers to retrieve sensitive data  including customer data, security system status, and event history.