Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mghw-9pvj-gcqj

Опубликовано: 06 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that could potentially allow a malicious user to commit unauthorized arbitrary code to the software by using a memory buffer overflow in the heap.

potentially resulting in a complete loss of confidentiality, integrity, and availability.

An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that could potentially allow a malicious user to commit unauthorized arbitrary code to the software by using a memory buffer overflow in the heap.

potentially resulting in a complete loss of confidentiality, integrity, and availability.

EPSS

Процентиль: 65%
0.00491
Низкий

7.8 High

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.8
nvd
больше 2 лет назад

An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that could potentially allow a malicious user to commit unauthorized arbitrary code to the software by using a memory buffer overflow in the heap. potentially resulting in a complete loss of confidentiality, integrity, and availability.

CVSS3: 9.8
fstec
больше 2 лет назад

Уязвимость программного обеспечения для дискретного моделирования событий и автоматизации Rockwell Automation Arena, связанная с возможностью чтения за границами буфера в памяти, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 65%
0.00491
Низкий

7.8 High

CVSS3

Дефекты

CWE-125