CVE-2019-13511
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 5.8%
exploitation probability
5.8%top 7% of all CVEs
observed exploitation
nono source reports it
Rockwell Automation Arena Simulation Software versions 16.00.00 and earlier contain an INFORMATION EXPOSURE CWE-200. A maliciously crafted Arena file opened by an unsuspecting user may result in the limited exposure of information related to the targeted workstation.
References
https://www.us-cert.gov/ics/advisories/icsa-19-213-05https://www.zerodayinitiative.com/advisories/ZDI-20-810/https://www.zerodayinitiative.com/advisories/ZDI-20-811/https://www.zerodayinitiative.com/advisories/ZDI-20-812/https://www.zerodayinitiative.com/advisories/ZDI-20-813/https://www.zerodayinitiative.com/advisories/ZDI-20-814/