In AzeoTech DAQFactory release 20.7 (Build 2555), an Access of Resource Using Incompatible Type vulnerability can be exploited to cause memory corruption while parsing specially crafted .ctl files. This could allow an attacker to execute code in the context of the current process.
Metrics
Affected Vendors & Products
References
History
Tue, 16 Dec 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 12 Dec 2025 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Azeotech
Azeotech daqfactory |
|
| Vendors & Products |
Azeotech
Azeotech daqfactory |
Thu, 11 Dec 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In AzeoTech DAQFactory release 20.7 (Build 2555), an Access of Resource Using Incompatible Type vulnerability can be exploited to cause memory corruption while parsing specially crafted .ctl files. This could allow an attacker to execute code in the context of the current process. | |
| Title | Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in AzeoTech DAQFactory | |
| Weaknesses | CWE-843 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: icscert
Published: 2025-12-11T20:54:38.739Z
Updated: 2025-12-15T20:34:01.266Z
Reserved: 2025-12-04T21:11:02.201Z
Link: CVE-2025-66586
Updated: 2025-12-15T20:30:21.403Z
Status : Undergoing Analysis
Published: 2025-12-11T21:15:57.583
Modified: 2025-12-12T15:17:31.973
Link: CVE-2025-66586
No data.