CVE-2013-0108
An ActiveX control in HscRemoteDeploy.dll in Honeywell Enterprise Buildings Integrator (EBI) R310, R400.2, R410.1, and R410.2; SymmetrE R310, R410.1, and R410.2; ComfortPoint Open Manager (aka CPO-M) Station R100; and HMIWeb Browser client packages allows remote attackers to execute arbitrary code via a crafted HTML document.
Published:Feb 24, 2013
Last Modified:Apr 11, 2025
EPS:Feb 24, 2013
EPSS Score:0.61426
CVSS Score:6.8
Affected Products
Vendor
Product
Action
Vendor
Honeywell
Product
Comfortpoint Open Manager Station
Honeywell
Comfortpoint Open Manager Station
Vendor
Honeywell
Product
Enterprise Buildings Integrator
Honeywell
Enterprise Buildings Integrator
Vendor
Honeywell
Product
Symmetre
Honeywell
Symmetre
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
