Back

HIGH

Code Execution Vulnerability in Arena®

Published Sep 3, 2026

Description

A remote code execution security issue exists in the affected products when parsing DOE files that could allow a remote attacker to write past the end of an allocated object and execute code within the context of the current process. To exploit this vulnerability, a legitimate user must visit a malicious page or open a malicious file.

Affected products

Remediation

No remediation recorded yet.

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Rockwell
Published Sep 3, 2026
Updated Sep 3, 2026
Reserved Apr 10, 2026
CISA Vulnrichment
Updated Sep 3, 2026
NVD
Status Awaiting Analysis
Modified Sep 3, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner Rockwell
Published Sep 3, 2026
Updated Sep 3, 2026
Exploited since n/a
EUVD-2026-70466