Alpaca[verified]@Alpaca744Disclosure
The post announces CVE‑2026‑12390 in AzeoTech DAQFactory, a type‑confusion flaw allowing arbitrary code execution via crafted .ctl files, with a CVSS score of 8.4, and notes that only mitigations are provided by CISA, with no patch available.
Aviatrix Threat Research Center[verified]@aviatrixtrcActive Exploitation
The tweet reports real‑world exploitation of CVE‑2026‑12390 in AzeoTech DAQFactory through malicious .ctl files that allows arbitrary code execution and lateral movement, underscoring the need for runtime segmentation.
CVE@CVEnewDisclosure
A type‑confusion vulnerability (CVE‑2026‑12390) in AzeoTech DAQFactory 21.1 and earlier can be triggered by specially crafted .ctl files, as noted in the CVE record.
Infoflowcloud@infoflowcloudDisclosure
The post announces CVE‑2026‑12390, a Type Confusion flaw in AzeoTech DAQFactory 21.1 and earlier, exploitable via crafted .ctl files, but provides no PoC, exploit, or patch info.