Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-21920


A memory buffer vulnerability in Rockwell Automation Arena Simulation could potentially let a threat actor read beyond the intended memory boundaries. This could reveal sensitive information and even cause the application to crash, resulting in a denial-of-service condition. To trigger this, the user would unwittingly need to open a malicious file shared by the threat actor.


Published

2024-03-26T16:15:11.277

Last Modified

2024-12-17T15:52:01.670

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 4.4 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-125
  • Type: Primary
    CWE-125

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application rockwellautomation arena ≥ 16.00.00 Yes

References