Description
Buffer overflow vulnerability exists in FutureNet AS series (Industrial Routers) and FA series (Protocol Conversion Machine) provided by Century Systems Co., Ltd. If this vulnerability is exploited, a remote unauthenticated attacker may reboot the device by sending a specially crafted request.
CVSS breakdown
CVSS 3.1
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
Low
Affected products
- Century Systems Co., Ltd. / FutureNet AS-210/U4firmware Version 2.6.6 and earlier – firmware Version 2.6.6 and earlier
- Century Systems Co., Ltd. / FutureNet AS-250/F-KOfirmware Version 1.14.0 and earlier – firmware Version 1.14.0 and earlier
- Century Systems Co., Ltd. / FutureNet AS-250/F-SCfirmware Version 1.14.0 and earlier – firmware Version 1.14.0 and earlier
- Century Systems Co., Ltd. / FutureNet AS-250/KLfirmware Version 1.14.0 and earlier – firmware Version 1.14.0 and earlier
- Century Systems Co., Ltd. / FutureNet AS-250/KL Rev2firmware Version 2.6.6 and earlier – firmware Version 2.6.6 and earlier
- Century Systems Co., Ltd. / FutureNet AS-250/Lfirmware Version 2.6.6 and earlier – firmware Version 2.6.6 and earlier
- Century Systems Co., Ltd. / FutureNet AS-250/NLfirmware Version 1.14.0 and earlier – firmware Version 1.14.0 and earlier
- Century Systems Co., Ltd. / FutureNet AS-250/Sfirmware Version 1.14.0 and earlier – firmware Version 1.14.0 and earlier
- Century Systems Co., Ltd. / FutureNet AS-M250/KLfirmware Version 3.0.0 and earlier – firmware Version 3.0.0 and earlier
- Century Systems Co., Ltd. / FutureNet AS-M250/Lfirmware Version 3.0.0 and earlier – firmware Version 3.0.0 and earlier
- Century Systems Co., Ltd. / FutureNet AS-M250/NLfirmware Version 3.0.0 and earlier – firmware Version 3.0.0 and earlier
- Century Systems Co., Ltd. / FutureNet AS-P250/KLfirmware Version 2.6.6 and earlier – firmware Version 2.6.6 and earlier
- Century Systems Co., Ltd. / FutureNet AS-P250/NLfirmware Version 2.6.6 and earlier – firmware Version 2.6.6 and earlier
- Century Systems Co., Ltd. / FutureNet FA-210firmware Version 1.1.9 and earlier – firmware Version 1.1.9 and earlier
- Century Systems Co., Ltd. / FutureNet FA-215firmware Version 1.0.1 and earlier – firmware Version 1.0.1 and earlier