📦 Arena

by Rockwellautomation

🔍 What is Arena?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-11918

HIGH CVSS 7.3 Nov 14, 2025

Rockwell Automation Arena® has a stack-based buffer overflow vulnerability in DOE file parsing. Local attackers can exploit this by opening malicious DOE files to potentially execute arbitrary code. ...

CVE-2025-7025

HIGH CVSS 7.8 Aug 5, 2025

A heap-based buffer overflow vulnerability in Rockwell Automation Arena Simulation allows attackers to execute arbitrary code or disclose information by tricking users into opening malicious files or ...

CVE-2025-7033

HIGH CVSS 7.8 Aug 5, 2025

A heap-based buffer overflow vulnerability in Rockwell Automation Arena Simulation allows attackers to execute arbitrary code or disclose information by tricking users into opening malicious files or ...

CVE-2025-6377

HIGH CVSS 7.8 Jul 9, 2025

A buffer overflow vulnerability in Rockwell Automation Arena allows remote code execution when a user opens a malicious DOE file. This affects Arena Simulation software users, requiring user interacti...

CVE-2024-11157

HIGH CVSS 7.3 Dec 19, 2024

A memory corruption vulnerability in Rockwell Automation Arena allows attackers to write beyond allocated memory boundaries in DOE files. This could lead to arbitrary code execution when a legitimate ...

CVE-2024-12175

HIGH CVSS 7.8 Dec 19, 2024

A use-after-free vulnerability in Rockwell Automation Arena allows arbitrary code execution when a user opens a malicious DOE file. This affects legitimate users of Arena simulation software who could...

CVE-2024-12130

HIGH CVSS 7.8 Dec 5, 2024

This CVE describes an out-of-bounds read vulnerability in Rockwell Automation Arena software that could allow arbitrary code execution. Attackers can craft malicious DOE files that cause the software ...

CVE-2024-11155

HIGH CVSS 7.8 Dec 5, 2024

A use-after-free vulnerability in Rockwell Automation Arena allows arbitrary code execution when a user opens a malicious DOE file. This affects legitimate users of Arena simulation software who could...

CVE-2024-21918

HIGH CVSS 7.8 Mar 26, 2024

A memory corruption vulnerability in Rockwell Automation Arena Simulation software allows attackers to execute arbitrary code by tricking users into opening malicious files. This affects all users of ...

CVE-2024-21912

HIGH CVSS 7.8 Mar 26, 2024

A memory corruption vulnerability in Rockwell Automation Arena Simulation allows arbitrary code execution when a user opens a malicious file. Attackers can exploit this to run harmful code on affected...

CVE-2023-27854

HIGH CVSS 7.8 Oct 27, 2023

A memory buffer overflow vulnerability in Rockwell Automation Arena Simulation software allows arbitrary code execution when a user opens a malicious file. This could enable attackers to compromise th...

CVE-2023-29460

HIGH CVSS 7.8 May 9, 2023

A memory buffer overflow vulnerability in Rockwell Automation's Arena Simulation software allows arbitrary code execution. This could let attackers run malicious code on affected systems, compromising...

CVE-2023-29462

HIGH CVSS 7.8 May 9, 2023

This is a heap buffer overflow vulnerability in Rockwell Automation's Arena Simulation software that allows arbitrary code execution. An attacker could exploit this to run malicious code on affected s...

CVE-2024-11158

MEDIUM CVSS 6.7 Dec 5, 2024

An uninitialized variable vulnerability in Rockwell Automation Arena allows attackers to craft malicious DOE files that, when opened by a legitimate user, could execute arbitrary code. This affects us...