CVE-2025-24846 - CVE House
Back to Database
Status published High CVE-2025-24846

Authentication bypass vulnerability exists in FutureNet AS series (Industrial Routers)...

Vulnerability Description

Authentication bypass vulnerability exists in FutureNet AS series (Industrial Routers) provided by Century Systems Co., Ltd. If this vulnerability is exploited, a remote unauthenticated attacker may obtain the device information such as MAC address by sending a specially crafted request.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-24846

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Century Systems Co., Ltd.

View all reports →

Affected Software

FutureNet AS-250/S, FutureNet AS-250/F-SC, FutureNet AS-250/F-KO, FutureNet AS-250/NL, FutureNet AS-250/KL, FutureNet AS-250/KL Rev2, FutureNet AS-250/L, FutureNet AS-M250/L, FutureNet AS-M250/KL, FutureNet AS-M250/NL, FutureNet AS-P250/NL, FutureNet AS-P250/KL, FutureNet AS-210/U4
Vulnerable Versions:
firmware Version 1.14.0 and earlier, firmware Version 2.6.4 and earlier

Timeline

Official Publish: March 3rd, 2025
Last Modified: March 3rd, 2025
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Weaknesses (CWE)