CVE-2025-66586

In AzeoTech DAQFactory release 20.7 (Build 2555), an Access of Resource Using Incompatible Type vulnerability can be exploited to cause memory corruption while parsing specially crafted .ctl files. This could allow an attacker to execute code in the context of the current process.
References
Link Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-25-345-03 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

cpe:2.3:a:azeotech:daqfactory:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-12-11 21:15

Updated : 2026-01-02 20:06


NVD link : CVE-2025-66586

Mitre link : CVE-2025-66586

CVE.ORG link : CVE-2025-66586


JSON object : View

Products Affected

azeotech

  • daqfactory
CWE
CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')