Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h5wm-63j8-q5vc

Опубликовано: 14 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7
CVSS3: 7.3

Описание

A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the linker.exe (Siman) component. The vulnerability stems from improper validation of user-supplied data, which can result in an out-of-bounds write. An attacker could leverage this vulnerability to execute arbitrary code in the context of the current process by convincing a user to open a malicious file.

A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the linker.exe (Siman) component. The vulnerability stems from improper validation of user-supplied data, which can result in an out-of-bounds write. An attacker could leverage this vulnerability to execute arbitrary code in the context of the current process by convincing a user to open a malicious file.

EPSS

Процентиль: 8%
0.0018
Низкий

7 High

CVSS4

7.3 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 7.3
nvd
18 дней назад

A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the linker.exe (Siman) component. The vulnerability stems from improper validation of user-supplied data, which can result in an out-of-bounds write. An attacker could leverage this vulnerability to execute arbitrary code in the context of the current process by convincing a user to open a malicious file.

CVSS3: 7.8
fstec
18 дней назад

Уязвимость исполняемого файла linker.exe программного обеспечения для дискретного моделирования событий и автоматизации Rockwell Automation Arena, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 8%
0.0018
Низкий

7 High

CVSS4

7.3 High

CVSS3

Дефекты

CWE-787