Filtered by vendor Rockwellautomation Subscriptions
Filtered by product Arena Simulation Software Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2019-13510 1 Rockwellautomation 1 Arena Simulation Software 2024-08-04 N/A
Rockwell Automation Arena Simulation Software versions 16.00.00 and earlier contain a USE AFTER FREE CWE-416. A maliciously crafted Arena file opened by an unsuspecting user may result in the application crashing or the execution of arbitrary code.
CVE-2019-13511 1 Rockwellautomation 1 Arena Simulation Software 2024-08-04 3.3 Low
Rockwell Automation Arena Simulation Software versions 16.00.00 and earlier contain an INFORMATION EXPOSURE CWE-200. A maliciously crafted Arena file opened by an unsuspecting user may result in the limited exposure of information related to the targeted workstation.
CVE-2019-13527 1 Rockwellautomation 1 Arena Simulation Software 2024-08-04 7.8 High
In Rockwell Automation Arena Simulation Software Cat. 9502-Ax, Versions 16.00.00 and earlier, a maliciously crafted Arena file opened by an unsuspecting user may result in the use of a pointer that has not been initialized.
CVE-2024-21913 1 Rockwellautomation 1 Arena Simulation Software 2024-08-02 7.8 High
A heap-based memory buffer overflow vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code into the software by overstepping the memory boundaries, which triggers an access violation. Once inside, the threat actor can run harmful code on the system. This affects the confidentiality, integrity, and availability of the product. To trigger this, the user would unwittingly need to open a malicious file shared by the threat actor.