CWE-203— Observable Discrepancy (Information Exposure via Side Channel)
The product behaves differently or sends different responses under different circumstances in a way that is observable to an unauthorized actor.— MITRE CWE catalog
769 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-203page 13 of 16
- CVE-2024-30040CRITICALCVSS 8.8EG 9.0⚠ KEV2024-05-14
Windows MSHTML Platform Security Feature Bypass Vulnerability
- CVE-2024-30171MEDIUMCVSS 5.9EG 5.92024-05-14
An issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in RSA based handshakes because of exception processing.
- CVE-2024-30176MEDIUMCVSS 5.3EG 5.32024-05-01
In Logpoint before 7.4.0, an attacker can enumerate a valid list of usernames by using publicly exposed URLs of shared widgets.
- CVE-2024-30257LOWCVSS 3.9EG 3.92024-04-18
1Panel is an open source Linux server operation and maintenance management panel. The password verification in the source code uses the != symbol instead hmac.Equal. This may lead to a timing attack vulnerability. This vulnerability is fix…
- CVE-2024-31870LOWCVSS 3.3EG 3.32024-06-15
IBM Db2 for i 7.2, 7.3, 7.4, and 7.5 supplies user defined table function is vulnerable to user enumeration by a local authenticated attacker, without having authority to the related *USRPRF objects. This can be used by a malicious actor …
- CVE-2024-31878MEDIUMCVSS 5.3EG 5.32024-06-07
IBM i 7.2, 7.3, 7.4, and 7.5 Service Tools Server (SST) is vulnerable to SST user enumeration by a remote attacker. This vulnerability can be used by a malicious actor to gather information about SST users that can be targeted in further …
- CVE-2024-32926MEDIUMCVSS 5.5EG 5.52024-06-13
there is a possible information disclosure due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
- CVE-2024-34336MEDIUMCVSS 5.3EG 5.32024-09-12
User enumeration vulnerability in ORDAT FOSS-Online before v2.24.01 allows attackers to determine if an account exists in the application by comparing the server responses of the forgot password functionality.
- CVE-2024-35114MEDIUMCVSS 5.3EG 5.32025-01-25
IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to enumerate usernames due to an observable discrepancy between login attempts.
- CVE-2024-36510MEDIUMCVSS 5.3EG 5.32025-01-14
An observable response discrepancy vulnerability [CWE-204] in FortiClientEMS 7.4.0, 7.2.0 through 7.2.4, 7.0 all versions, and FortiSOAR 7.5.0, 7.4.0 through 7.4.4, 7.3.0 through 7.3.2, 7.2 all versions, 7.0 all versions, 6.4 all versions …
- CVE-2024-36996MEDIUMCVSS 5.3EG 5.32024-07-01
In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.109, an attacker could determine whether or not another user exists on the instance by deciphering the error response that they …
- CVE-2024-37880HIGHCVSS 7.5EG 7.52024-06-10
The Kyber reference implementation before 9b8d306, when compiled by LLVM Clang through 18.x with some common optimization options, has a timing side channel that allows attackers to recover an ML-KEM 512 secret key in minutes. This occurs …
- CVE-2024-38322MEDIUMCVSS 5.3EG 5.32024-06-28
IBM Storage Defender - Resiliency Service 2.0.0 through 2.0.4 agent username and password error response discrepancy exposes product to brute force enumeration. IBM X-Force ID: 294869.
- CVE-2024-38431MEDIUMCVSS 5.3EG 5.32024-07-30
Matrix Tafnit v8 - CWE-204: Observable Response Discrepancy
- CVE-2024-38465MEDIUMCVSS 5.3EG 5.32024-06-16
Shenzhen Guoxin Synthesis image system before 8.3.0 allows username enumeration because of the response discrepancy of incorrect versus error.
- CVE-2024-39830HIGHCVSS 8.1EG 8.12024-07-03
Mattermost versions 9.8.x <= 9.8.0, 9.7.x <= 9.7.4, 9.6.x <= 9.6.2 and 9.5.x <= 9.5.5, when shared channels are enabled, fail to use constant time comparison for remote cluster tokens which allows an attacker to retrieve the remote cluster…
- CVE-2024-39891CRITICALCVSS 5.3EG 9.0⚠ KEV2024-07-02
In the Twilio Authy API, accessed by Authy Android before 25.1.0 and Authy iOS before 26.1.0, an unauthenticated endpoint provided access to certain phone-number data, as exploited in the wild in June 2024. Specifically, the endpoint accep…
- CVE-2024-39921HIGHCVSS 7.5EG 7.52024-09-04
Observable timing discrepancy issue exists in IPCOM EX2 Series V01L02NF0001 to V01L06NF0401, V01L20NF0001 to V01L20NF0401, V02L20NF0001 to V02L21NF0301, and IPCOM VE2 Series V01L04NF0001 to V01L06NF0112. If this vulnerability is exploited,…
- CVE-2024-40490HIGHCVSS 7.5EG 7.52024-11-01
An issue in Sourcebans++ before v.1.8.0 allows a remote attacker to obtain sensitive information via a crafted XAJAX call to the Forgot Password function.
- CVE-2024-41335HIGHCVSS 7.5EG 7.52025-02-27
Draytek devices Vigor 165/166 prior to v4.2.6 , Vigor 2620/LTE200 prior to v3.9.8.8, Vigor 2860/2925 prior to v3.9.7, Vigor 2862/2926 prior to v3.9.9.4, Vigor 2133/2762/2832 prior to v3.9.8, Vigor 2135/2765/2766 prior to v4.4.5.1, Vigor 28…
- CVE-2024-41715MEDIUMCVSS 4.3EG 4.32024-09-26
The goTenna Pro ATAK Plugin does not inject extra characters into broadcasted frames to obfuscate the length of messages. This makes it possible to tell the length of the payload regardless of the encryption used.
- CVE-2024-41741MEDIUMCVSS 5.3EG 5.32024-11-01
IBM TXSeries for Multiplatforms 10.1 could allow an attacker to determine valid usernames due to an observable timing discrepancy which could be used in further attacks against the system.
- CVE-2024-41760LOWCVSS 3.7EG 3.72025-03-11
IBM Common Cryptographic Architecture 7.0.0 through 7.5.51 could allow an attacker to obtain sensitive information due to a timing attack during certain RSA operations.
- CVE-2024-41880MEDIUMCVSS 5.3EG 5.32024-07-22
In veilid-core in Veilid before 0.3.4, the protocol's ping function can be misused in a way that decreases the effectiveness of safety and private routes.
- CVE-2024-41952MEDIUMCVSS 5.3EG 5.32024-07-31
Zitadel is an open source identity management system. ZITADEL administrators can enable a setting called "Ignoring unknown usernames" which helps mitigate attacks that try to guess/enumerate usernames. If enabled, ZITADEL will show the pas…
- CVE-2024-42174LOWCVSS 3.7EG 3.72025-01-11
HCL MyXalytics is affected by username enumeration vulnerability. This allows a malicious user to perform enumeration of application users, and therefore compile a list of valid usernames.
- CVE-2024-42343MEDIUMCVSS 5.3EG 5.32024-09-08
Loway - CWE-204: Observable Response Discrepancy
- CVE-2024-43095HIGHCVSS 7.8EG 7.82025-01-21
In multiple locations, there is a possible way to obtain any system permission due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed fo…
- CVE-2024-43546MEDIUMCVSS 5.6EG 5.62024-10-08
Windows Cryptographic Information Disclosure Vulnerability
- CVE-2024-43763MEDIUMCVSS 6.5EG 6.52025-01-21
In build_read_multi_rsp of gatt_sr.cc, there is a possible denial of service due to a logic error in the code. This could lead to remote (proximal/adjacent) denial of service with no additional execution privileges needed. User interaction…
- CVE-2024-45052MEDIUMCVSS 5.3EG 5.32024-09-04
Fides is an open-source privacy engineering platform. Prior to version 2.44.0, a timing-based username enumeration vulnerability exists in Fides Webserver authentication. This vulnerability allows an unauthenticated attacker to determine t…
- CVE-2024-45089MEDIUMCVSS 4.3EG 4.32025-01-31
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition EBICS server could allow an authenticated user to obtain sensitive filename information due to an observable discrepancy.
- CVE-2024-45231MEDIUMCVSS 5.3EG 5.32024-10-08
An issue was discovered in Django v5.1.1, v5.0.9, and v4.2.16. The django.contrib.auth.forms.PasswordResetForm class, when used in a view implementing password reset flows, allows remote attackers to enumerate user e-mail addresses by send…
- CVE-2024-45678MEDIUMCVSS 4.2EG 4.22024-09-03
Yubico YubiKey 5 Series devices with firmware before 5.7.0 and YubiHSM 2 devices with firmware before 2.4.0 allow an ECDSA secret-key extraction attack (that requires physical access and expensive equipment) in which an electromagnetic sid…
- CVE-2024-47057MEDIUMCVSS 5.3EG 5.32025-05-28
SummaryThis advisory addresses a security vulnerability in Mautic related to the "Forget your password" functionality. This vulnerability could be exploited by unauthenticated users to enumerate valid usernames. User Enumeration via Timin…
- CVE-2024-47129MEDIUMCVSS 4.3EG 4.32024-09-26
The goTenna Pro App does not inject extra characters into broadcasted frames to obfuscate the length of messages. This makes it possible to tell the length of the payload regardless of the encryption used.
- CVE-2024-47149LOWCVSS 3.3EG 3.32024-12-26
Some Honor products are affected by incorrect privilege assignment vulnerability, successful exploitation could cause device service exceptions.
- CVE-2024-47150LOWCVSS 3.3EG 3.32024-12-26
Some Honor products are affected by information leak vulnerability, successful exploitation could cause the information leak.
- CVE-2024-47153MEDIUMCVSS 6.2EG 6.22024-12-26
Some Honor products are affected by information leak vulnerability, successful exploitation could cause the information leak.
- CVE-2024-47154MEDIUMCVSS 5.5EG 5.52024-12-26
Some Honor products are affected by information leak vulnerability, successful exploitation could cause the information leak.
- CVE-2024-47155MEDIUMCVSS 5.5EG 5.52024-12-26
Some Honor products are affected by information leak vulnerability, successful exploitation could cause the information leak.
- CVE-2024-47156LOWCVSS 3.3EG 3.32024-12-26
Some Honor products are affected by information leak vulnerability, successful exploitation could cause the information leak.
- CVE-2024-47678MEDIUMCVSS 5.5EG 5.52024-10-21
In the Linux kernel, the following vulnerability has been resolved: icmp: change the order of rate limits ICMP messages are ratelimited : After the blamed commits, the two rate limiters are applied in this order: 1) host wide ratelimit…
- CVE-2024-47869LOWCVSS 3.7EG 3.72024-10-10
Gradio is an open-source Python package designed for quick prototyping. This vulnerability involves a **timing attack** in the way Gradio compares hashes for the `analytics_dashboard` function. Since the comparison is not done in constant …
- CVE-2024-48644MEDIUMCVSS 5.3EG 5.32024-10-22
Accounts enumeration vulnerability in the Login Component of Reolink Duo 2 WiFi Camera (Firmware Version v3.0.0.1889_23031701) allows remote attackers to determine valid user accounts via login attempts. This can lead to the enumeration of…
- CVE-2024-49358MEDIUMCVSS 5.3EG 5.32024-10-24
ZimaOS is a fork of CasaOS, an operating system for Zima devices and x86-64 systems with UEFI. In version 1.2.4 and all prior versions, the API endpoint `http://<Server-IP>/v1/users/login` in ZimaOS returns distinct responses based on whet…
- CVE-2024-49733MEDIUMCVSS 5.5EG 5.52025-01-21
In reload of ServiceListing.java , there is a possible way to allow a malicious app to hide an NLS from Settings due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges need…
- CVE-2024-49734HIGHCVSS 7.5EG 7.52025-01-21
In multiple functions of ConnectivityService.java, there is a possible way for a Wi-Fi AP to determine what site a device has connected to through a VPN due to side channel information disclosure. This could lead to remote information disc…
- CVE-2024-50102MEDIUMCVSS 5.5EG 5.52024-11-05
In the Linux kernel, the following vulnerability has been resolved: x86: fix user address masking non-canonical speculation issue It turns out that AMD has a "Meltdown Lite(tm)" issue with non-canonical accesses in kernel space. And so …
- CVE-2024-50382MEDIUMCVSS 5.9EG 5.92024-10-23
Botan before 3.6.0, when certain LLVM versions are used, has compiler-induced secret-dependent control flow in lib/utils/ghash/ghash.cpp in GHASH in AES-GCM. There is a branch instead of an XOR with carry. This was observed for Clang in LL…
Map vulnerabilities like CWE-203 to your infrastructure
EchelonGraph correlates every CVE — across CWE-203 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →