CVE-2025-3288 - Rockwell Automation Arena Unvalidated Data Buffer Overflow Vulnerability
CVE ID : CVE-2025-3288
Published : April 8, 2025, 4:15 p.m. | 2 hours, 1 minute ago
Description : A local code execution vulnerability exists in the Rockwell Automation Arena® due to a threat actor being able to read outside of the allocated memory buffer. The flaw is a result of improper validation of user-supplied data. If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : April 8, 2025, 4:15 p.m. | 2 hours, 1 minute ago
Description : A local code execution vulnerability exists in the Rockwell Automation Arena® due to a threat actor being able to read outside of the allocated memory buffer. The flaw is a result of improper validation of user-supplied data. If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...