In AzeoTech DAQFactory release 20.7 (Build 2555), an Access of Resource Using Incompatible Type vulnerability can be exploited to cause memory corruption while parsing specially crafted .ctl files. This could allow an attacker to execute code in the context of the current process.
Metrics
Affected Vendors & Products
References
History
Fri, 12 Dec 2025 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Azeotech
Azeotech daqfactory |
|
| Vendors & Products |
Azeotech
Azeotech daqfactory |
Thu, 11 Dec 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In AzeoTech DAQFactory release 20.7 (Build 2555), an Access of Resource Using Incompatible Type vulnerability can be exploited to cause memory corruption while parsing specially crafted .ctl files. This could allow an attacker to execute code in the context of the current process. | |
| Title | Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in AzeoTech DAQFactory | |
| Weaknesses | CWE-843 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: icscert
Published: 2025-12-11T20:54:38.739Z
Updated: 2025-12-11T20:54:38.739Z
Reserved: 2025-12-04T21:11:02.201Z
Link: CVE-2025-66586
No data.
Status : Undergoing Analysis
Published: 2025-12-11T21:15:57.583
Modified: 2025-12-12T15:17:31.973
Link: CVE-2025-66586
No data.