CVE-2024-6068: Rcokwellautomation Arena Input Analyzer
High severity, CVSS 7.3. EPSS: 0.2% chance of exploitation in the next 30 days.
A memory corruption vulnerability exists in the affected products when parsing DFT files. Local threat actors can exploit this issue to disclose information and to execute arbitrary code. To exploit this vulnerability a legitimate user must open a malicious DFT file.
Affected products
- Rcokwellautomation Arena Input Analyzer: up to and including 16.20.03
- Rockwell Automation Arena Input Analyzer: up to and including 16.20.03
Published 2024-11-14. Last modified 2026-06-17.