CVE-2024-12130
- EPSS 0.03%
- Published 05.12.2024 18:15:21
- Last modified 17.12.2024 15:52:01
An “out of bounds read” code execution vulnerability exists in the Rockwell Automation Arena® that could allow a threat actor to craft a DOE file and force the software to read beyond the boundaries of an allocated memory. If exploited, a threat ac...
CVE-2024-11158
- EPSS 0.03%
- Published 05.12.2024 18:15:21
- Last modified 18.04.2025 18:15:37
An “uninitialized variable” code execution vulnerability exists in the Rockwell Automation Arena® that could allow a threat actor to craft a DOE file and force the software to access a variable before it being initialized. If exploited, a threat ...
CVE-2024-11156
- EPSS 0.03%
- Published 05.12.2024 18:15:21
- Last modified 17.12.2024 15:52:01
An “out of bounds write” code execution vulnerability exists in the Rockwell Automation Arena® that could allow a threat actor to write beyond the boundaries of allocated memory in a DOE file. If exploited, a threat actor could leverage this vuln...
CVE-2024-11155
- EPSS 0.03%
- Published 05.12.2024 18:15:20
- Last modified 14.04.2025 17:17:56
A “use after free” code execution vulnerability exists in the Rockwell Automation Arena® that could allow a threat actor to craft a DOE file and force the software to use a resource that was already used. If exploited, a threat actor could leverage ...
CVE-2024-2929
- EPSS 0.03%
- Published 26.03.2024 16:15:14
- Last modified 17.12.2024 16:14:25
A memory corruption vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code to the software by corrupting the memory triggering an access violation. Once inside, the threat...
CVE-2024-21920
- EPSS 0.03%
- Published 26.03.2024 16:15:11
- Last modified 17.12.2024 15:52:01
A memory buffer vulnerability in Rockwell Automation Arena Simulation could potentially let a threat actor read beyond the intended memory boundaries. This could reveal sensitive information and even cause the application to crash, resulting in a ...
CVE-2024-21919
- EPSS 0.03%
- Published 26.03.2024 16:15:11
- Last modified 17.12.2024 16:16:16
An uninitialized pointer in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code to the software by leveraging the pointer after it is properly. Once inside, the threat actor can run har...
CVE-2024-21918
- EPSS 0.03%
- Published 26.03.2024 16:15:10
- Last modified 17.12.2024 16:15:50
A memory buffer vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code to the software by corrupting the memory and triggering an access violation. Once inside, the threat...
CVE-2024-21913
- EPSS 0.03%
- Published 26.03.2024 16:15:10
- Last modified 17.12.2024 16:16:24
A heap-based memory buffer overflow vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code into the software by overstepping the memory boundaries, which triggers an access...
CVE-2024-21912
- EPSS 0.02%
- Published 26.03.2024 16:15:10
- Last modified 17.12.2024 16:16:07
An arbitrary code execution vulnerability in Rockwell Automation Arena Simulation could let a malicious user insert unauthorized code into the software. This is done by writing beyond the designated memory area, which causes an access violation. Onc...