In AzeoTech DAQFactory release 20.7 (Build 2555), an Out-of-bounds Write vulnerability can be exploited by an attacker to cause the program to write data past the end of an allocated memory buffer. This can lead to arbitrary code execution or a system crash.
History

Fri, 02 Jan 2026 20:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:azeotech:daqfactory:*:*:*:*:*:*:*:*
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Fri, 12 Dec 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 12 Dec 2025 09:00:00 +0000

Type Values Removed Values Added
First Time appeared Azeotech
Azeotech daqfactory
Vendors & Products Azeotech
Azeotech daqfactory

Thu, 11 Dec 2025 21:00:00 +0000

Type Values Removed Values Added
Description In AzeoTech DAQFactory release 20.7 (Build 2555), an Out-of-bounds Write vulnerability can be exploited by an attacker to cause the program to write data past the end of an allocated memory buffer. This can lead to arbitrary code execution or a system crash.
Title Out-of-bounds Write vulnerability in AzeoTech DAQFactory
Weaknesses CWE-787
References
Metrics cvssV4_0

{'score': 8.4, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2025-12-11T20:45:55.130Z

Updated: 2025-12-30T19:57:37.030Z

Reserved: 2025-12-04T21:11:02.201Z

Link: CVE-2025-66590

cve-icon Vulnrichment

Updated: 2025-12-12T21:37:23.797Z

cve-icon NVD

Status : Analyzed

Published: 2025-12-11T21:15:58.233

Modified: 2026-01-02T20:05:55.470

Link: CVE-2025-66590

cve-icon Redhat

No data.