OS Command Injection Vulnerability in FutureNet MA and IP-K Series by Century Systems
CVE-2025-54763

8.6HIGH

What is CVE-2025-54763?

The FutureNet MA and IP-K series by Century Systems offer a web-based interface that is susceptible to an OS command injection vulnerability. This flaw allows authenticated users to issue arbitrary operating system commands through the web UI, potentially compromising system integrity and security. Proper measures must be taken to address this vulnerability to safeguard against unauthorized access and command execution.

Affected Version(s)

FutureNet IP-K series from 2.0.0 to 2.2.1

FutureNet MA-E300 series from 5.0.0 to 6.2.1

FutureNet MA-P series from 5.0.0 to 6.4.0

References

CVSS V4

Score:
8.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-54763 : OS Command Injection Vulnerability in FutureNet MA and IP-K Series by Century Systems