← Back to CVE List
Vulnerability Intelligence Report
Rockwell Automation Heap-based Buffer Overflow In Arena® Simulation

CVE-2025-7025

A memory abuse issue exists in the Rockwell Automation Arena® Simulation. A custom file can force Arena Simulation to read and write past the end of memory space. Successful use requires user action, such as opening a bad file or webpage. If used, a threat actor could execute code or disclose information.

No Active Exploit Signals
CVSS Base Score
8.4
HIGH
EPSS Probability:0.28%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Weaknesses (CWE)

CWE-122 ↗CWE-122: Heap-based Buffer Overflow

Affected Products & Versions

Vendor Product Affected Versions
Rockwell Automation Arena® Simulation 16.20.09 and prior (affected)

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
0.283%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityRockwell Automation · Vendor · USA
Reserved2025-07-02T15:16:08
Published2025-08-05T13:37:17
Last Updated2026-02-26T17:49:58

LINK COPIED TO CLIPBOARD