CVE-2025-66644
Array Networks ArrayOS AG OS Command Injection Vulnerability
Array Networks ArrayOS AG before 9.4.5.9 allows command injection, as exploited in the wild in August through December 2025.
HIGH · CVSS 7.2
⚠ CISA KEV
EPSS 0.02026
Act now
- Listed on CISA KEV (known exploited in the wild)
- SSVC exploitation status: active
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0