Vulnerability Details CVE-2020-24639
                There is a vulnerability caused by unsafe Java deserialization that allows for arbitrary command execution in a containerized environment within Airwave Glass before 1.3.3. Successful exploitation can lead to complete compromise of the underlying host operating system.
                
                    Exploit prediction scoring system (EPSS) score
                    
                        
                            EPSS Score 0.007
                        
                    
                    
                        
                            EPSS Ranking 72.1%
                        
                    
                 
                
                    CVSS Severity
                    
                        
                            CVSS v3 Score 9.8
                        
                    
                    
                        
                            CVSS v2 Score 10.0
                        
                    
                 
                
                
                
                    
                
                
                    
                        Products affected by CVE-2020-24639
                        
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:arubanetworks:airwave_glass:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:arubanetworks:airwave_glass:1.2.1
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:arubanetworks:airwave_glass:1.3.0
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:arubanetworks:airwave_glass:1.3.1
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:arubanetworks:airwave_glass:1.3.2