Rockwell Automation Arena
cpe:2.3:a:rockwellautomation:arena_simulation:*:*:*:*:*:*:*, +1 more
- <= 16.20.10
A stack-based buffer overflow vulnerability has been identified in Rockwell Automation Arena Simulation, specifically in versions through 16.20.10. This vulnerability arises from the parsing of DOE files, allowing local attackers to potentially execute arbitrary code on affected installations. Exploitation of this issue requires opening a malicious DOE file.
Exploitation of this vulnerability could lead to arbitrary code execution on the affected system.
Users can upgrade to Arena Simulation version 16.20.11 or later to address this vulnerability. For those unable to upgrade, Rockwell Automation recommends following their security best practices.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.