Known vulnerabilities in omaha
Vendor:
Google
Software:
omaha
Software CPE:
cpe:2.3::google:omaha:*:*:*:*:*:*:*:*
Website:
https://www.google.com/
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
7.2
Breakdown by Severity Chart
1.3.36.261
1.3.36.231
1.3.36.151
1.3.36.131
1.3.36.121
1.3.36.111
1.3.36.101
1.3.36.91
1.3.36.81
1.3.36.71
1.3.36.61
1.3.36.51
1.3.36.41
1.3.36.31
1.3.29.5
1.3.33.23
1.3.23.67
1.3.28.1
1.3.28.11
1.3.28.13
1.3.28.15
1.3.30.3
1.3.31.5
1.3.32.7
1.3.33.3
1.3.33.5
1.3.33.7
1.3.34.7
1.3.35.1
1.3.35.301
1.3.35.341
1.3.35.401
1.3.35.421
1.3.35.441
1.3.35.451
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU55000 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') |
CWE-362 | Medium | 1.3.36.91 | 20.07.2021 |
SB2021072006 |
||
| #VU52760 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') |
CWE-22 | Medium | 1.3.36.81 | 29.04.2021 |
SB2021042926 |