Vulnerabilities > Rockwellautomation > Arena > High

DATE CVE VULNERABILITY TITLE RISK
2024-12-05 CVE-2024-11156 Out-of-bounds Write vulnerability in Rockwellautomation Arena
An “out of bounds write” code execution vulnerability exists in the Rockwell Automation Arena® that could allow a threat actor to write beyond the boundaries of allocated memory in a DOE file.
local
low complexity
rockwellautomation CWE-787
7.8
2024-12-05 CVE-2024-12130 Out-of-bounds Read vulnerability in Rockwellautomation Arena
An “out of bounds read” code execution vulnerability exists in the Rockwell Automation Arena® that could allow a threat actor to craft a DOE file and force the software to read beyond the boundaries of an allocated memory.
local
low complexity
rockwellautomation CWE-125
7.8
2024-03-26 CVE-2024-21912 Out-of-bounds Write vulnerability in Rockwellautomation Arena
An arbitrary code execution vulnerability in Rockwell Automation Arena Simulation could let a malicious user insert unauthorized code into the software.
local
low complexity
rockwellautomation CWE-787
7.8
2024-03-26 CVE-2024-21913 Out-of-bounds Write vulnerability in Rockwellautomation Arena
A heap-based memory buffer overflow vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code into the software by overstepping the memory boundaries, which triggers an access violation.
local
low complexity
rockwellautomation CWE-787
7.8
2024-03-26 CVE-2024-21918 Use After Free vulnerability in Rockwellautomation Arena
A memory buffer vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code to the software by corrupting the memory and triggering an access violation.
local
low complexity
rockwellautomation CWE-416
7.8
2024-03-26 CVE-2024-21919 Access of Uninitialized Pointer vulnerability in Rockwellautomation Arena
An uninitialized pointer in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code to the software by leveraging the pointer after it is properly.
local
low complexity
rockwellautomation CWE-824
7.8
2024-03-26 CVE-2024-21920 Out-of-bounds Read vulnerability in Rockwellautomation Arena
A memory buffer vulnerability in Rockwell Automation Arena Simulation could potentially let a threat actor read beyond the intended memory boundaries.
local
low complexity
rockwellautomation CWE-125
7.1
2024-03-26 CVE-2024-2929 Out-of-bounds Write vulnerability in Rockwellautomation Arena
A memory corruption vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code to the software by corrupting the memory triggering an access violation.
local
low complexity
rockwellautomation CWE-787
7.8
2023-10-27 CVE-2023-27854 Out-of-bounds Read vulnerability in Rockwellautomation Arena
An arbitrary code execution vulnerability was reported to Rockwell Automation in Arena Simulation that could potentially allow a malicious user to commit unauthorized arbitrary code to the software by using a memory buffer overflow.
local
low complexity
rockwellautomation CWE-125
7.8
2023-10-27 CVE-2023-27858 Access of Uninitialized Pointer vulnerability in Rockwellautomation Arena
Rockwell Automation Arena Simulation contains an arbitrary code execution vulnerability that could potentially allow a malicious user to commit unauthorized code to the software by using an uninitialized pointer in the application.
local
low complexity
rockwellautomation CWE-824
7.8