potentially resulting in a complete loss of confidentiality, integrity, and availability.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Customers using the affected software are encouraged to apply the risk mitigations, if possible. - Upgrade to 16.20.01 which has been patched to mitigate this issue.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-33031 | An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that could potentially allow a malicious user to commit unauthorized arbitrary code to the software by using a memory buffer overflow in the heap. potentially resulting in a complete loss of confidentiality, integrity, and availability. |
Tue, 28 Jan 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 17 Dec 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Rockwellautomation arena
|
|
| CPEs | cpe:2.3:a:rockwellautomation:arena_simulation:16.20.01:*:*:*:*:*:*:* |
cpe:2.3:a:rockwellautomation:arena:16.00.00:*:*:*:*:*:*:* cpe:2.3:a:rockwellautomation:arena:16.20.01:*:*:*:*:*:*:* |
| Vendors & Products |
Rockwellautomation arena Simulation
|
Rockwellautomation arena
|
Status: PUBLISHED
Assigner: Rockwell
Published:
Updated: 2025-01-28T17:21:18.530Z
Reserved: 2023-04-06T18:42:59.008Z
Link: CVE-2023-29462
Updated: 2024-08-02T14:07:46.223Z
Status : Modified
Published: 2023-05-09T14:15:13.343
Modified: 2024-12-17T15:52:01.670
Link: CVE-2023-29462
No data.
OpenCVE Enrichment
No data.
EUVD