This attack could pose a serious security threat. You should take immediate action to stop any damage or prevent further damage from happening.
This signature detects an attempt to exploit a remote code execution vulnerability in Honeywell HSC Remote Deployer.
Multiple Honeywell Products are prone to a remote code-execution vulnerability because it fails to properly validate user-supplied input submitted to the 'HscRemoteDeploy.dll' Activex control. An attacker can exploit this issue by enticing an unsuspecting user to view a specially crafted HTML document.
Successfully exploiting this issue allows remote attackers to execute arbitrary code in the context of the application (typically Internet Explorer) using the ActiveX control. Failed exploit attempts likely result in denial-of-service conditions.
- Honeywell EBI
- Honeywell SymmetrE
- Honeywell CPO-M