← back
CVE-2025-66585

Use After Free vulnerability in AzeoTech DAQFactory

CVSS 7.3 HIGHEPSS 0.2%CWE-416
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.3EPSS 0.2%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
11 Dec 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
In AzeoTech DAQFactory release 20.7 (Build 2555), a use after free vulnerability can be exploited to cause memory corruption while parsing specially crafted .ctl files. This could allow an attacker to execute code in the context of the current process.
CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Affected products
AzeoTech · DAQFactory

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →