Логотип exploitDog
bind:CVE-2024-2929
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-2929

Количество 3

Количество 3

nvd логотип

CVE-2024-2929

почти 2 года назад

A memory corruption vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code to the software by corrupting the memory triggering an access violation. Once inside, the threat actor can run harmful code on the system. This affects the confidentiality, integrity, and availability of the product. To trigger this, the user would unwittingly need to open a malicious file shared by the threat actor.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-8857-m4qp-w9m7

почти 2 года назад

A memory corruption vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code to the software by corrupting the memory triggering an access violation. Once inside, the threat actor can run harmful code on the system. This affects the confidentiality, integrity, and availability of the product. To trigger this, the user would unwittingly need to open a malicious file shared by the threat actor.

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2024-02497

почти 2 года назад

Уязвимость программного средства для моделирования и автоматизации дискретных событий Arena Simulation, вызванная выходом операции за границы буфера в памяти, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-2929

A memory corruption vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code to the software by corrupting the memory triggering an access violation. Once inside, the threat actor can run harmful code on the system. This affects the confidentiality, integrity, and availability of the product. To trigger this, the user would unwittingly need to open a malicious file shared by the threat actor.

CVSS3: 7.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-8857-m4qp-w9m7

A memory corruption vulnerability in Rockwell Automation Arena Simulation software could potentially allow a malicious user to insert unauthorized code to the software by corrupting the memory triggering an access violation. Once inside, the threat actor can run harmful code on the system. This affects the confidentiality, integrity, and availability of the product. To trigger this, the user would unwittingly need to open a malicious file shared by the threat actor.

CVSS3: 7.8
0%
Низкий
почти 2 года назад
fstec логотип
BDU:2024-02497

Уязвимость программного средства для моделирования и автоматизации дискретных событий Arena Simulation, вызванная выходом операции за границы буфера в памяти, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 7.8
0%
Низкий
почти 2 года назад

Уязвимостей на страницу