Metrics
Affected Vendors & Products
No advisories yet.
Solution
AzeoTech has released the following update that addresses these issues: * DAQFactory: Release 21.1 AzeoTech also recommends users take the following actions to reduce the risk: * Users are discouraged from using documents from unknown/untrusted sources. * Users are encouraged to store .ctl files in a folder only writeable by admin-level users. * Users are encouraged to operate in “Safe Mode” when loading documents that have been out of their control. * Users are encouraged to apply a document editing password to their documents.
Workaround
No workaround given by the vendor.
Fri, 12 Dec 2025 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Azeotech
Azeotech daqfactory |
|
| Vendors & Products |
Azeotech
Azeotech daqfactory |
Thu, 11 Dec 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In AzeoTech DAQFactory release 20.7 (Build 2555), a Stack-Based Buffer Overflow vulnerability can be exploited to cause memory corruption while parsing specially crafted .ctl files. This could allow an attacker to execute code in the context of the current process. | |
| Title | Stack-based Buffer Overflow vulnerability in AzeoTech DAQFactory | |
| Weaknesses | CWE-121 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-12-11T20:58:53.846Z
Reserved: 2025-12-04T21:11:02.200Z
Link: CVE-2025-66584
No data.
Status : Undergoing Analysis
Published: 2025-12-11T21:15:57.263
Modified: 2025-12-12T15:17:31.973
Link: CVE-2025-66584
No data.
OpenCVE Enrichment
Updated: 2025-12-12T08:49:49Z