Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-96hv-3955-2m5m

Опубликовано: 06 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that could potentially allow a malicious user to commit unauthorized arbitrary code to the software by using a memory buffer overflow in the heap.

potentially resulting in a complete loss of confidentiality, integrity, and availability.

An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that could potentially allow a malicious user to commit unauthorized arbitrary code to the software by using a memory buffer overflow in the heap.

potentially resulting in a complete loss of confidentiality, integrity, and availability.

EPSS

Процентиль: 12%
0.00042
Низкий

7.8 High

CVSS3

Дефекты

CWE-125
CWE-787

Связанные уязвимости

CVSS3: 7.8
nvd
больше 2 лет назад

An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that could potentially allow a malicious user to commit unauthorized arbitrary code to the software by using a memory buffer overflow in the heap. potentially resulting in a complete loss of confidentiality, integrity, and availability.

CVSS3: 9.8
fstec
больше 2 лет назад

Уязвимость программного средства для моделирования и автоматизации дискретных событий Arena Simulation, связанная с возможностью переполнения буфера на основе кучи, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 12%
0.00042
Низкий

7.8 High

CVSS3

Дефекты

CWE-125
CWE-787