Filtered by vendor Rockwellautomation
Subscriptions
Filtered by product Arena Simulation Software
Subscriptions
Total
4 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2019-13510 | 1 Rockwellautomation | 1 Arena Simulation Software | 2024-08-04 | N/A |
Rockwell Automation Arena Simulation Software versions 16.00.00 and earlier contain a USE AFTER FREE CWE-416. A maliciously crafted Arena file opened by an unsuspecting user may result in the application crashing or the execution of arbitrary code. | ||||
CVE-2019-13511 | 1 Rockwellautomation | 1 Arena Simulation Software | 2024-08-04 | 3.3 Low |
Rockwell Automation Arena Simulation Software versions 16.00.00 and earlier contain an INFORMATION EXPOSURE CWE-200. A maliciously crafted Arena file opened by an unsuspecting user may result in the limited exposure of information related to the targeted workstation. | ||||
CVE-2019-13527 | 1 Rockwellautomation | 1 Arena Simulation Software | 2024-08-04 | 7.8 High |
In Rockwell Automation Arena Simulation Software Cat. 9502-Ax, Versions 16.00.00 and earlier, a maliciously crafted Arena file opened by an unsuspecting user may result in the use of a pointer that has not been initialized. | ||||
CVE-2024-21913 | 1 Rockwellautomation | 1 Arena Simulation Software | 2024-08-02 | 7.8 High |
A heap-based memory buffer overflow vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code into the software by overstepping the memory boundaries, which triggers an access violation. Once inside, the threat actor can run harmful code on the system. This affects the confidentiality, integrity, and availability of the product. To trigger this, the user would unwittingly need to open a malicious file shared by the threat actor. |
Page 1 of 1.