CVE-2025-25280

MEDIUM

Century Systems Co., Ltd. - Buffer Overflow

Title source: llm
STIX 2.1

Description

Buffer overflow vulnerability exists in FutureNet AS series (Industrial Routers) and FA series (Protocol Conversion Machine) provided by Century Systems Co., Ltd. If this vulnerability is exploited, a remote unauthenticated attacker may reboot the device by sending a specially crafted request.

References (2)

Core 2

Scores

CVSS v3 5.3
EPSS 0.0104
EPSS Percentile 77.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-120
Status published
Products (15)
Century Systems Co., Ltd./FutureNet AS-210/U4 firmware Version 2.6.6 and earlier
Century Systems Co., Ltd./FutureNet AS-250/F-KO firmware Version 1.14.0 and earlier
Century Systems Co., Ltd./FutureNet AS-250/F-SC firmware Version 1.14.0 and earlier
Century Systems Co., Ltd./FutureNet AS-250/KL firmware Version 1.14.0 and earlier
Century Systems Co., Ltd./FutureNet AS-250/KL Rev2 firmware Version 2.6.6 and earlier
Century Systems Co., Ltd./FutureNet AS-250/L firmware Version 2.6.6 and earlier
Century Systems Co., Ltd./FutureNet AS-250/NL firmware Version 1.14.0 and earlier
Century Systems Co., Ltd./FutureNet AS-250/S firmware Version 1.14.0 and earlier
Century Systems Co., Ltd./FutureNet AS-M250/KL firmware Version 3.0.0 and earlier
Century Systems Co., Ltd./FutureNet AS-M250/L firmware Version 3.0.0 and earlier
... and 5 more
Published Mar 03, 2025
Tracked Since Feb 18, 2026