Skip to main content
0-Doubt
NewsInvestorsQuestionnairesDeveloperHelp
AnonymousSign in
0-Doubt — neutral IT/Security research
BrowseResellersCertified analystsRFI/RFP questionnairesHow trust worksHelp & FAQAPI
  1. Home/
  2. Array Networks/
  3. Array AG Series SSL VPN Remote Access

Array AG Series SSL VPN Remote Access

AI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Secure coding rating: 0/100How this score is computedA product with no known CVEs starts at a neutral score and climbs the longer it goes without one; a product with known CVEs is penalized by severity instead. This one has 6 known CVEs (vendor-level match — see the CVE list below) and is tracked as ~39 days old in our catalog (a stand-in for real release date, which we don't track). The platform admin controls the formula's weights.

SSL VPN gateway for secure remote access to applications and networks

by Array Networks · arraynetworks.com · source ↗

Known CVEs (6)About this listSourced from the public NVD database, matched by vendor name. Shown here at the vendor level — we don't track per-product/version data, so a listed CVE may affect a different product from this vendor, not necessarily this one. “New” means published within the last 30 days. “Actively exploited” means CISA's Known Exploited Vulnerabilities (KEV) catalog confirms real-world exploitation, not just a theoretical severity score.

RSS ⇢
  • CVE-2025-66644 ↗⚠ actively exploitedHIGH 7.22025

    Array Networks ArrayOS AG before 9.4.5.9 allows command injection, as exploited in the wild in August through December 2025.

  • CVE-2014-125121 ↗2025

    Array Networks vAPV (version 8.3.2.17) and vxAG (version 9.2.0.34) appliances are affected by a privilege escalation vulnerability caused by a combination of hardcoded SSH credentials (or SSH private …

  • CVE-2023-28461 ↗⚠ actively exploitedCRITICAL 9.82023

    Array Networks Array AG Series and vxAG (9.4.0.481 and earlier) allow remote code execution. An attacker can browse the filesystem on the SSL VPN gateway using a flags attribute in an HTTP header with…

  • CVE-2023-28460 ↗HIGH 7.22023

    A command injection vulnerability was discovered in Array Networks APV products. A remote attacker can send a crafted packet after logging into the affected appliance as an administrator, resulting in…

  • CVE-2023-24613 ↗MEDIUM 4.92023

    The user interface of Array Networks AG Series and vxAG through 9.4.0.470 could allow a remote attacker to use the gdb tool to overwrite the backend function call stack after accessing the system with…

  • CVE-2022-42897 ↗CRITICAL 9.82022

    Array Networks AG/vxAG with ArrayOS AG before 9.4.0.469 allows unauthenticated command injection that leads to privilege escalation and control of the system. NOTE: ArrayOS AG 10.x is unaffected.

Materials

0

No datasheets, whitepapers, case studies, videos, or demos linked yet.

Other VPN products

see all →
  • AVG Secure VPN · AVG
  • Aviatrix High-Performance Encryption · Aviatrix
  • Avira Phantom VPN Pro · Avira
  • CYSEC ARCA SATCOM VPN · CYSEC
  • Cloudbric VPN · Cloudbric
  • Cohesive VNS3 People VPN · Cohesive Networks
  • CyberGhost VPN · CyberGhost
  • CyberGhost VPN Dedicated IP · CyberGhost