Four Faith manufactures industrial networking and communications equipment, particularly cellular routers and gateway devices designed for remote site management and infrastructure monitoring applications. The vendor's vulnerability disclosures cluster around a tightly focused product line, including models such as the F3X36 and F3X24 router series and related firmware, reflecting a specialized embedded-systems footprint rather than a broad consumer or enterprise platform. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Four Faith over time
Signals from CVEs in this vendor scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-12856HIGH The Four-Faith router models F3x24 and F3x36 are affected by an operating system (OS) command injection vulnerability. At least firmware version 2.0 allows authenticated and remote | Dec 27, 2024 | 7.2 | 70 | NO | NO |
CVE-2024-9643CRITICAL The Four-Faith F3x36 router using firmware v2.0.0 is vulnerable to authentication bypass due to hard-coded credentials in the administrative web server. An attacker with knowledge | Feb 4, 2025 | 9.8 | 43 | NO | YES |
CVE-2024-9644CRITICAL The Four-Faith F3x36 router using firmware v2.0.0 is vulnerable to an
authentication bypass vulnerability in the administrative web server. Authentication is not enforced on some | Feb 4, 2025 | 9.8 | 29 | NO | NO |
CVE-2023-3805CRITICAL A vulnerability, which was classified as critical, has been found in Xiamen Four Letter Video Surveillance Management System up to 20230712. This issue affects some unknown process | Jul 21, 2023 | 9.8 | 28 | NO | NO |
CVE-2025-11018HIGH A flaw has been found in Four-Faith Water Conservancy Informatization Platform 1.0. This affects an unknown function of the file /sysRole/index.do/../../generalReport/download.do;u | Sep 26, 2025 | 7.5 | 25 | NO | NO |
CVE-2025-10709HIGH A vulnerability was detected in Four-Faith Water Conservancy Informatization Platform 1.0. Affected by this issue is some unknown functionality of the file /history/historyDownload | Sep 19, 2025 | 7.5 | 25 | NO | NO |
CVE-2025-10708HIGH A security vulnerability has been detected in Four-Faith Water Conservancy Informatization Platform 1.0. Affected by this vulnerability is an unknown functionality of the file /his | Sep 19, 2025 | 7.5 | 25 | NO | NO |
CVE-2019-12168HIGH Four-Faith Wireless Mobile Router F3x24 v1.0 devices allow remote code execution via the Command Shell (aka Administration > Commands) screen. | May 17, 2019 | 7.2 | 25 | NO | NO |
CVE-2023-6308HIGH A vulnerability, which was classified as critical, has been found in Xiamen Four-Faith Video Surveillance Management System 2016/2017. Affected by this issue is some unknown functi | Nov 27, 2023 | 8.8 | 22 | NO | NO |
Signals from CVEs in this vendor scope (9 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Four Faith.
Media articles that mention a CVE ID that affects a product developed by Four Faith — matched by CVE ID, not by vendor name.