A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software version 16.00.00 and earlier may result in the limited exposure of information related to the targeted workstation. Rockwell Automation has released version 16.00.01 of Arena Simulation Software to address the reported vulnerabilities.
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HRockwellautomation Arena
APPRockwellautomation≤ 16.00.00
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Related vulnerabilities
CVE-2026-8314HIGH7.0PL ✓same product
Rockwell Automation Arena: out-of-bounds write umożliwiający RCE
CVE-2026-8313HIGH7.0PL ✓same product
Rockwell Automation Arena – out-of-bounds write w komponencie linker.exe (Siman)
CVE-2026-8312HIGH7.0PL ✓same product
RCE w Rockwell Automation Arena — out-of-bounds write w expmt.exe
CVE-2026-8085HIGH7.0PL ✓same product
RCE poprzez out-of-bounds write w Rockwell Automation Arena Simulation
CVE-2025-11918HIGH7.1same product
Rockwell Automation Arena® suffers from a stack-based buffer overflow vulnerability. The specific flaw exists ...