In AzeoTech DAQFactory release 20.7 (Build 2555), an Out-of-bounds Write vulnerability can be exploited by an attacker to cause the program to write data past the end of an allocated memory buffer. This can lead to arbitrary code execution or a system crash.
History

Fri, 12 Dec 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 12 Dec 2025 09:00:00 +0000

Type Values Removed Values Added
First Time appeared Azeotech
Azeotech daqfactory
Vendors & Products Azeotech
Azeotech daqfactory

Thu, 11 Dec 2025 21:00:00 +0000

Type Values Removed Values Added
Description In AzeoTech DAQFactory release 20.7 (Build 2555), an Out-of-bounds Write vulnerability can be exploited by an attacker to cause the program to write data past the end of an allocated memory buffer. This can lead to arbitrary code execution or a system crash.
Title Out-of-bounds Write vulnerability in AzeoTech DAQFactory
Weaknesses CWE-787
References
Metrics cvssV4_0

{'score': 8.4, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2025-12-11T20:45:55.130Z

Updated: 2025-12-12T21:37:29.466Z

Reserved: 2025-12-04T21:11:02.201Z

Link: CVE-2025-66590

cve-icon Vulnrichment

Updated: 2025-12-12T21:37:23.797Z

cve-icon NVD

Status : Undergoing Analysis

Published: 2025-12-11T21:15:58.233

Modified: 2025-12-12T15:17:31.973

Link: CVE-2025-66590

cve-icon Redhat

No data.