Rockwell Automation Arena® suffers from a stack-based buffer overflow vulnerability. The specific flaw exists within the parsing of DOE files. Local attackers are able to exploit this issue to potentially execute arbitrary code on affected installations of Arena®. Exploiting the vulnerability requires opening a malicious DOE file.
History

Mon, 17 Nov 2025 18:00:00 +0000

Type Values Removed Values Added
First Time appeared Rockwellautomation arena
CPEs cpe:2.3:a:rockwellautomation:arena:*:*:*:*:*:*:*:*
Vendors & Products Rockwellautomation arena
Metrics cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H'}


Sat, 15 Nov 2025 21:30:00 +0000

Type Values Removed Values Added
First Time appeared Rockwellautomation
Rockwellautomation arena Simulation
Vendors & Products Rockwellautomation
Rockwellautomation arena Simulation

Fri, 14 Nov 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 14 Nov 2025 13:45:00 +0000

Type Values Removed Values Added
Description Rockwell Automation Arena® suffers from a stack-based buffer overflow vulnerability. The specific flaw exists within the parsing of DOE files. Local attackers are able to exploit this issue to potentially execute arbitrary code on affected installations of Arena®. Exploiting the vulnerability requires opening a malicious DOE file.
Title Rockwell Automation Arena® Simulation Stack-Based Buffer Overflow Vulnerability
Weaknesses CWE-121
References
Metrics cvssV4_0

{'score': 7.1, 'vector': 'CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Rockwell

Published: 2025-11-14T13:28:39.453Z

Updated: 2025-11-14T15:44:16.712Z

Reserved: 2025-10-17T14:31:53.014Z

Link: CVE-2025-11918

cve-icon Vulnrichment

Updated: 2025-11-14T15:44:12.038Z

cve-icon NVD

Status : Analyzed

Published: 2025-11-14T14:15:45.993

Modified: 2025-11-17T17:48:50.567

Link: CVE-2025-11918

cve-icon Redhat

No data.