CVE-2024-21920: Rockwellautomation Arena

High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.

A memory buffer vulnerability in Rockwell Automation Arena Simulation could potentially let a threat actor read beyond the intended memory boundaries. This could reveal sensitive information and even cause the application to crash, resulting in a denial-of-service condition. To trigger this, the user would unwittingly need to open a malicious file shared by the threat actor.

Affected products

Published 2024-03-26. Last modified 2026-06-17.