Heap-Based Memory Buffer Overflow Vulnerability Threatens Product Confidentiality, Integrity, and Availability
CVE-2024-21913
7.8HIGH
What is CVE-2024-21913?
A vulnerability in the Arena Simulation software from Rockwell Automation involves a heap-based memory buffer overflow, which allows attackers to exploit memory boundaries and induce access violations. By manipulating this flaw, a malicious user can inject unauthorized code into the system. This risk becomes apparent when users unknowingly open files crafted by an attacker, enabling potential harm to the system's confidentiality, integrity, and availability.
Affected Version(s)
Arena Simulation Version 16.00 - 16.20.02