Vulnerabilities > Azeotech

DATE CVE VULNERABILITY TITLE RISK
2021-11-05 CVE-2021-42543 Use of Inherently Dangerous Function vulnerability in Azeotech Daqfactory
The affected application uses specific functions that could be abused through a crafted project file, which could lead to code execution, system reboot, and system shutdown.
network
azeotech CWE-242
7.5
2021-11-05 CVE-2021-42698 Deserialization of Untrusted Data vulnerability in Azeotech Daqfactory
Project files are stored memory objects in the form of binary serialized data that can later be read and deserialized again to instantiate the original objects in memory.
network
azeotech CWE-502
6.8
2021-11-05 CVE-2021-42699 Cleartext Transmission of Sensitive Information vulnerability in Azeotech Daqfactory
The affected product is vulnerable to cookie information being transmitted as cleartext over HTTP.
network
azeotech CWE-319
4.3
2021-11-05 CVE-2021-42701 Modification of Assumed-Immutable Data (MAID) vulnerability in Azeotech Daqfactory
An attacker could prepare a specially crafted project file that, if opened, would attempt to connect to the cloud and trigger a man in the middle (MiTM) attack.
network
high complexity
azeotech CWE-471
2.6
2017-09-09 CVE-2017-5147 Uncontrolled Search Path Element vulnerability in Azeotech Daqfactory
An Uncontrolled Search Path Element issue was discovered in AzeoTech DAQFactory versions prior to 17.1.
local
low complexity
azeotech CWE-427
4.6
2017-09-09 CVE-2017-12699 Incorrect Default Permissions vulnerability in Azeotech Daqfactory
An Incorrect Default Permissions issue was discovered in AzeoTech DAQFactory versions prior to 17.1.
local
low complexity
azeotech CWE-276
3.6
2011-09-16 CVE-2011-3492 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Azeotech Daqfactory
Stack-based buffer overflow in Azeotech DAQFactory 5.85 build 1853 and earlier allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a crafted NETB packet to UDP port 20034.
network
low complexity
azeotech CWE-119
critical
10.0
2011-07-28 CVE-2011-2956 Improper Authentication vulnerability in Azeotech Daqfactory
AzeoTech DAQFactory before 5.85 (Build 1842) does not perform authentication for certain signals, which allows remote attackers to cause a denial of service (system reboot or shutdown) via a signal.
network
low complexity
azeotech CWE-287
7.8
2009-12-30 CVE-2009-4480 Buffer Errors vulnerability in Azeotech Daqfactory 5.77
Buffer overflow in the web service in AzeoTech DAQFactory 5.77 might allow remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by a certain module in VulnDisco Pack Professional 7.16 through 8.11.
network
azeotech CWE-119
critical
9.3