Rockwell Automation · Arena Simulation · CVE-2023-29462
**Name of the Vulnerable Software and Affected Versions**
Rockwell Automation Arena Simulation (affected versions not specified)
**Description**
The issue is related to an arbitrary code execution vulnerability in Rockwell Automation's Arena Simulation software. This vulnerability could allow a malicious user to execute unauthorized arbitrary code by exploiting a memory buffer overflow in the heap, potentially resulting in a complete loss of confidentiality, integrity, and availability. The vulnerability is associated with a heap-based buffer overflow, which can be exploited by a remote attacker to execute arbitrary code.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.