High severity7.3NVD Advisory· Published Nov 14, 2025· Updated Jun 17, 2026
CVE-2025-11918
CVE-2025-11918
Description
Rockwell Automation Arena® suffers from a stack-based buffer overflow vulnerability. The specific flaw exists within the parsing of DOE files. Local attackers are able to exploit this issue to potentially execute arbitrary code on affected installations of Arena®. Exploiting the vulnerability requires opening a malicious DOE file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3(expand)+ 1 more
- (no CPE)
- cpe:2.3:a:rockwellautomation:arena:*:*:*:*:*:*:*:*range: <16.20.11
- Range: Version 16.20.10 and prior
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.