CVE-2019-13521 is a high-severity vulnerability affecting Rockwell Automation Arena Simulation Software versions 16.00.00 and earlier. It allows a maliciously crafted program file, when opened by an unsuspecting user, to lead to the limited exposure of information from the targeted workstation. The CVSS score of 7.8 indicates a high impact on confidentiality, integrity, and availability, with a local attack vector and low attack complexity requiring user interaction. While Rockwell Automation has released version 16.00.01 to address this, there is currently no public exploit code, active exploitation, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 16.00.00CPE matchmatch criteria | cpe:2.3:a:rockwellautomation:arena:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.