Use After Free Vulnerability in AzeoTech DAQFactory
CVE-2025-66585

7.3HIGH

Key Information:

Vendor

Azeotech

Vendor
CVE Published:
11 December 2025

What is CVE-2025-66585?

AzeoTech DAQFactory version 20.7 (Build 2555) contains a Use After Free vulnerability that can be exploited by attackers to induce memory corruption. This vulnerability arises during the parsing of specially crafted .ctl files, potentially allowing unauthorized code execution within the context of the current process. It is essential for users of DAQFactory to be aware of this risk and implement necessary security measures.

Affected Version(s)

DAQFactory 0

References

CVSS V4

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

ZDI
Michael Heinzl
.
CVE-2025-66585 : Use After Free Vulnerability in AzeoTech DAQFactory