CVE-2024-21920: Rockwellautomation Arena
High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.
A memory buffer vulnerability in Rockwell Automation Arena Simulation could potentially let a threat actor read beyond the intended memory boundaries. This could reveal sensitive information and even cause the application to crash, resulting in a denial-of-service condition. To trigger this, the user would unwittingly need to open a malicious file shared by the threat actor.
Affected products
- Rockwellautomation Arena: from 16.00.00
Published 2024-03-26. Last modified 2026-06-17.