A command injection vulnerability in Array Networks AG Series secure access gateways has been actively exploited since August 2025, as reported by JPCERT/CC. This issue, which lacks a CVE identifier, was resolved by the company on May 11, 2025. The vulnerability is linked to Array’s DesktopDirect, a remote desktop access solution that enables secure user access. Users are urged to ensure their systems are updated to mitigate risks associated with this exploit.
Want More Context? 🔎
Loading PerspectiveSplit analysis...






