Published: 2024/10/31  Last Updated: 2024/10/31

Information from Century Systems Co., Ltd.

Vulnerability ID:JVNVU#95001899
Title:REST-APIs unintentionally enabled in Century Systems FutureNet NXR series routers
Status:Vulnerable

This is a statement from the vendor itself with no modification by JPCERT/CC.

The following NXR series products and versions are affected by this vulnerability.

Applicable products
FutureNet NXR-G110 series firmware versions 21.15.7 and later but prior to 21.15.9
FutureNet NXR-G060 series firmware versions prior to 21.15.6C1
FutureNet NXR-G050 series firmware versions 21.12.5 and later but prior to 21.12.11

We provide information on this issue at the following URL

https://www.centurysys.co.jp/backnumber/nxr_common/20241031-01.html