CVE-2023-29461: Rockwellautomation Arena
Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.
An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that could potentially allow a malicious user to commit unauthorized arbitrary code to the software by using a memory buffer overflow in the heap. potentially resulting in a complete loss of confidentiality, integrity, and availability.
Affected products
- Rockwellautomation Arena: version 16.00.00 only; version 16.20.00 only
Published 2023-05-09. Last modified 2026-06-17.