<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 23:48:56 +0000</lastBuildDate>
    <item>
      <title>CVE-2023-27854 — Rockwell Automation Arena® Simulation Out of Bounds Read Vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2023-27854</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rockwell Automation Arena Simulation&lt;/p&gt;
&lt;p&gt;An arbitrary code execution vulnerability was reported to Rockwell Automation in Arena Simulation that could potentially allow a malicious user to commit unauthorized arbitrary code to the software by using a memory buffer overflow.  The threat-actor could then execute malicious code on the system affecting the confidentiality, integrity, and availability of the product.  The user would need to open a malicious file provided to them by the attacker for the code to execute.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rockwell Automation Arena Simulation&lt;/p&gt;
&lt;p&gt;An arbitrary code execution vulnerability was reported to Rockwell Automation in Arena Simulation that could potentially allow a malicious user to commit unauthorized arbitrary code to the software by using a memory buffer overflow.  The threat-actor could then execute malicious code on the system affecting the confidentiality, integrity, and availability of the product.  The user would need to open a malicious file provided to them by the attacker for the code to execute.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2023-27854</guid>
    </item>
    <item>
      <title>ICSA-23-299-04 — Rockwell Automation Arena</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-23-299-04</link>
      <description>&lt;p&gt;Version 16.20 of Rockwell Automation&amp;#39;s Arena software contains an out-of-bounds read vulnerability when certain malformed files are processed. An attacker with local access could utilize this to potentially leak memory or achieve arbitrary code execution. Version 16.20 of Rockwell Automation&amp;#39;s Arena software contains an uninitialized pointer when certain malformed files are processed. A local attacker who has properly prepared a malformed file may be able to point to a predetermined location in memory and execute arbitrary code.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Version 16.20 of Rockwell Automation&amp;#39;s Arena software contains an out-of-bounds read vulnerability when certain malformed files are processed. An attacker with local access could utilize this to potentially leak memory or achieve arbitrary code execution. Version 16.20 of Rockwell Automation&amp;#39;s Arena software contains an uninitialized pointer when certain malformed files are processed. A local attacker who has properly prepared a malformed file may be able to point to a predetermined location in memory and execute arbitrary code.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-23-299-04</guid>
    </item>
  </channel>
</rss>
