CVE-2025-24846

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Mar 3, 2025
CWE ID 288

Summary

CVE-2025-24846 is a newly discovered vulnerability affecting the FutureNet AS series industrial routers provided by Century Systems Co., Ltd. This issue allows remote, unauthenticated attackers to bypass the authentication process and obtain sensitive device information, including the MAC address, by sending a specifically crafted request. Successful exploitation could potentially lead to further attacks or unauthorized access to the targeted network infrastructure. Organizations using these routers are advised to apply the available patch or update as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share