In AzeoTech DAQFactory release 20.7 (Build 2555), an out-of-bounds write vulnerability can be exploited by an attacker to cause the program to write data past the end of an allocated memory buffer. This can lead to arbitrary code execution or a system crash.
References
| Link | Resource |
|---|---|
| https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2025/icsa-25-345-03.json | |
| https://www.cisa.gov/news-events/ics-advisories/icsa-25-345-03 | Third Party Advisory US Government Resource |
Configurations
History
04 Jun 2026, 21:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
| Summary | (en) In AzeoTech DAQFactory release 20.7 (Build 2555), an out-of-bounds write vulnerability can be exploited by an attacker to cause the program to write data past the end of an allocated memory buffer. This can lead to arbitrary code execution or a system crash. |
02 Jan 2026, 20:05
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
| References | () https://www.cisa.gov/news-events/ics-advisories/icsa-25-345-03 - Third Party Advisory, US Government Resource | |
| CPE | cpe:2.3:a:azeotech:daqfactory:*:*:*:*:*:*:*:* | |
| First Time |
Azeotech daqfactory
Azeotech |
11 Dec 2025, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-12-11 21:15
Updated : 2026-06-04 21:16
NVD link : CVE-2025-66590
Mitre link : CVE-2025-66590
CVE.ORG link : CVE-2025-66590
JSON object : View
Products Affected
azeotech
- daqfactory
CWE
CWE-787
Out-of-bounds Write
