CVE-2025-66588

In AzeoTech DAQFactory release 20.7 (Build 2555), an Access of Uninitialized Pointer vulnerability can be exploited by an attacker which can lead to arbitrary code execution.
References
Link Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-25-345-03 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

cpe:2.3:a:azeotech:daqfactory:*:*:*:*:*:*:*:*

History

02 Jan 2026, 20:08

Type Values Removed Values Added
References () https://www.cisa.gov/news-events/ics-advisories/icsa-25-345-03 - () https://www.cisa.gov/news-events/ics-advisories/icsa-25-345-03 - Third Party Advisory, US Government Resource
CPE cpe:2.3:a:azeotech:daqfactory:*:*:*:*:*:*:*:*
First Time Azeotech daqfactory
Azeotech
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8

11 Dec 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-11 21:15

Updated : 2026-01-02 20:08


NVD link : CVE-2025-66588

Mitre link : CVE-2025-66588

CVE.ORG link : CVE-2025-66588


JSON object : View

Products Affected

azeotech

  • daqfactory
CWE
CWE-824

Access of Uninitialized Pointer