Security Advisory

CVE-2025-11918

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-11-14 13:28:39
Last updated 2025-11-14 15:44:16
Assigner Rockwell
State PUBLISHED

Description

Rockwell Automation Arena® suffers from a stack-based buffer overflow vulnerability. The specific flaw exists within the parsing of DOE files. Local attackers are able to exploit this issue to potentially execute arbitrary code on affected installations of Arena®. Exploiting the vulnerability requires opening a malicious DOE file.