7.2
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Description
Array Networks ArrayOS AG before 9.4.5.9 allows command injection, as exploited in the wild in August through December 2025.
Basic Information
ID
CVE-2025-66644
Source
mitre
Published
Dec 5, 2025 at 00:00
Modified
Dec 5, 2025 at 19:04
Affected Product
Vendor
Array Networks
Product
ArrayOS AG
Affected Versions
Array Networks ArrayOS AG 0