target entity

Array Networks

2 source-linked records in the current knowledge graph.

high

CVE-2025-66644: Array Networks ArrayOS AG OS Command Injection Vulnerability

Array Networks ArrayOS AG contains an OS command injection vulnerability that could allow an attacker to execute arbitrary commands. Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

CVE-2025-66644EPSS 3.1%Array Networks ArrayOS AG
CISA KEV ↗ · unattributed attribution
high

CVE-2023-28461: Array Networks AG and vxAG ArrayOS Missing Authentication for Critical Function Vulnerability

Array Networks AG and vxAG ArrayOS contain a missing authentication for critical function vulnerability that allows an attacker to read local files and execute code on the SSL VPN gateway. Required action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

CVE-2023-28461EPSS 67.6%AG/vxAG ArrayOSArray Networks
CISA KEV ↗ · unattributed attribution