CWE-203— Observable Discrepancy (Information Exposure via Side Channel)
The product behaves differently or sends different responses under different circumstances in a way that is observable to an unauthorized actor.— MITRE CWE catalog
832 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-203page 10 of 17
- CVE-2025-24506MEDIUMCVSS 5.3EG 5.32025-01-30
A specific authentication strategy allows to learn ids of PAM users associated with certain authentication types.
- CVE-2023-37413MEDIUMCVSS 5.3EG 5.32025-01-29
IBM Aspera Faspex 5.0.0 through 5.0.10 could disclose sensitive username information due to an observable response discrepancy.
- CVE-2024-35114MEDIUMCVSS 5.3EG 5.32025-01-25
IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to enumerate usernames due to an observable discrepancy between login attempts.
- CVE-2025-24011MEDIUMCVSS 5.3EG 5.32025-01-21
Umbraco is a free and open source .NET content management system. Starting in version 14.0.0 and prior to versions 14.3.2 and 15.1.2, it's possible to determine whether an account exists based on an analysis of response codes and timing of…
- CVE-2024-36510MEDIUMCVSS 5.3EG 5.32025-01-14
An observable response discrepancy vulnerability [CWE-204] in FortiClientEMS 7.4.0, 7.2.0 through 7.2.4, 7.0 all versions, and FortiSOAR 7.5.0, 7.4.0 through 7.4.4, 7.3.0 through 7.3.2, 7.2 all versions, 7.0 all versions, 6.4 all versions …
- CVE-2024-56738MEDIUMCVSS 5.3EG 5.32024-12-29
GNU GRUB (aka GRUB2) through 2.12 does not use a constant-time algorithm for grub_crypto_memcmp and thus allows side-channel attacks.
- CVE-2024-54454MEDIUMCVSS 5.3EG 5.32024-12-27
An issue was discovered in Kurmi Provisioning Suite before 7.9.0.35, 7.10.x through 7.10.0.18, and 7.11.x through 7.11.0.15. An Observable Response Discrepancy vulnerability in the sendPasswordReinitLink action of the unlogged.do page allo…
- CVE-2024-11297MEDIUMCVSS 5.3EG 5.32024-12-20
The Page Restriction WordPress (WP) – Protect WP Pages/Post plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.3.6 via the WordPress core search feature. This makes it possible fo…
- CVE-2024-54002MEDIUMCVSS 5.3EG 5.32024-12-04
Dependency-Track is a Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain. Performing a login request against the /api/v1/user/login endpoint with a username that exist in the syst…
- CVE-2020-26062MEDIUMCVSS 5.3EG 5.32024-11-18
A vulnerability in Cisco Integrated Management Controller could allow an unauthenticated, remote attacker to enumerate valid usernames within the vulnerable application. The vulnerability is due to differences in authentication respo…
- CVE-2024-41741MEDIUMCVSS 5.3EG 5.32024-11-01
IBM TXSeries for Multiplatforms 10.1 could allow an attacker to determine valid usernames due to an observable timing discrepancy which could be used in further attacks against the system.
- CVE-2024-49358MEDIUMCVSS 5.3EG 5.32024-10-24
ZimaOS is a fork of CasaOS, an operating system for Zima devices and x86-64 systems with UEFI. In version 1.2.4 and all prior versions, the API endpoint `http://<Server-IP>/v1/users/login` in ZimaOS returns distinct responses based on whet…
- CVE-2024-48644MEDIUMCVSS 5.3EG 5.32024-10-22
Accounts enumeration vulnerability in the Login Component of Reolink Duo 2 WiFi Camera (Firmware Version v3.0.0.1889_23031701) allows remote attackers to determine valid user accounts via login attempts. This can lead to the enumeration of…
- CVE-2024-45231MEDIUMCVSS 5.3EG 5.32024-10-08
An issue was discovered in Django v5.1.1, v5.0.9, and v4.2.16. The django.contrib.auth.forms.PasswordResetForm class, when used in a view implementing password reset flows, allows remote attackers to enumerate user e-mail addresses by send…
- CVE-2024-9398MEDIUMCVSS 5.3EG 5.32024-10-01
By checking the result of calls to `window.open` with specifically set protocol handlers, an attacker could determine if the application which implements that protocol handler is installed. This vulnerability affects Firefox < 131, Firefox…
- CVE-2024-8651MEDIUMCVSS 5.3EG 5.32024-09-19
A vulnerability in NetCat CMS allows an attacker to send a specially crafted http request that can be used to check whether a user exists in the system, which could be a basis for further attacks. This issue affects NetCat CMS v. 6.4.0.241…
- CVE-2024-23984MEDIUMCVSS 5.3EG 5.32024-09-16
Observable discrepancy in RAPL interface for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.
- CVE-2024-34336MEDIUMCVSS 5.3EG 5.32024-09-12
User enumeration vulnerability in ORDAT FOSS-Online before v2.24.01 allows attackers to determine if an account exists in the application by comparing the server responses of the forgot password functionality.
- CVE-2024-42343MEDIUMCVSS 5.3EG 5.32024-09-08
Loway - CWE-204: Observable Response Discrepancy
- CVE-2024-45052MEDIUMCVSS 5.3EG 5.32024-09-04
Fides is an open-source privacy engineering platform. Prior to version 2.44.0, a timing-based username enumeration vulnerability exists in Fides Webserver authentication. This vulnerability allows an unauthenticated attacker to determine t…
- CVE-2024-41952MEDIUMCVSS 5.3EG 5.32024-07-31
Zitadel is an open source identity management system. ZITADEL administrators can enable a setting called "Ignoring unknown usernames" which helps mitigate attacks that try to guess/enumerate usernames. If enabled, ZITADEL will show the pas…
- CVE-2024-38431MEDIUMCVSS 5.3EG 5.32024-07-30
Matrix Tafnit v8 - CWE-204: Observable Response Discrepancy
- CVE-2024-41880MEDIUMCVSS 5.3EG 5.32024-07-22
In veilid-core in Veilid before 0.3.4, the protocol's ping function can be misused in a way that decreases the effectiveness of safety and private routes.
- CVE-2024-36996MEDIUMCVSS 5.3EG 5.32024-07-01
In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.109, an attacker could determine whether or not another user exists on the instance by deciphering the error response that they …
- CVE-2024-38322MEDIUMCVSS 5.3EG 5.32024-06-28
IBM Storage Defender - Resiliency Service 2.0.0 through 2.0.4 agent username and password error response discrepancy exposes product to brute force enumeration. IBM X-Force ID: 294869.
- CVE-2024-38465MEDIUMCVSS 5.3EG 5.32024-06-16
Shenzhen Guoxin Synthesis image system before 8.3.0 allows username enumeration because of the response discrepancy of incorrect versus error.
- CVE-2024-31878MEDIUMCVSS 5.3EG 5.32024-06-07
IBM i 7.2, 7.3, 7.4, and 7.5 Service Tools Server (SST) is vulnerable to SST user enumeration by a remote attacker. This vulnerability can be used by a malicious actor to gather information about SST users that can be targeted in further …
- CVE-2023-27283MEDIUMCVSS 5.3EG 5.32024-05-04
IBM Aspera Orchestrator 4.0.1 could allow a remote attacker to enumerate usernames due to observable response discrepancies. IBM X-Force ID: 248545.
- CVE-2021-20556MEDIUMCVSS 5.3EG 5.32024-05-03
IBM Cognos Controller 10.4.1, 10.4.2, and 11.0.0 could allow a remote user to enumerate usernames due to differentiating error messages on existing usernames. IBM X-Force ID: 199181.
- CVE-2024-30176MEDIUMCVSS 5.3EG 5.32024-05-01
In Logpoint before 7.4.0, an attacker can enumerate a valid list of usernames by using publicly exposed URLs of shared widgets.
- CVE-2024-25651MEDIUMCVSS 5.3EG 5.32024-03-14
User enumeration can occur in the Authentication REST API in Delinea PAM Secret Server 11.4. This allows a remote attacker to determine whether a user is valid because of a difference in responses from the /oauth2/token endpoint.
- CVE-2023-38362MEDIUMCVSS 5.3EG 5.32024-03-04
IBM CICS TX Advanced 10.1 could disclose sensitive information to a remote attacker due to observable discrepancy in HTTP responses. IBM X-Force ID: 260814.
- CVE-2024-26268MEDIUMCVSS 5.3EG 5.32024-02-20
User enumeration vulnerability in Liferay Portal 7.2.0 through 7.4.3.26, and older unsupported versions, and Liferay DXP 7.4 before update 27, 7.3 before update 8, 7.2 before fix pack 20, and older unsupported versions allows remote attack…
- CVE-2024-25146MEDIUMCVSS 5.3EG 5.32024-02-08
Liferay Portal 7.2.0 through 7.4.1, and older unsupported versions, and Liferay DXP 7.3 before service pack 3, 7.2 before fix pack 18, and older unsupported versions returns with different responses depending on whether a site does not exi…
- CVE-2024-0564MEDIUMCVSS 5.3EG 5.32024-01-30
A flaw was found in the Linux kernel's memory deduplication mechanism. The max page sharing of Kernel Samepage Merging (KSM), added in Linux kernel version 4.4.0-96.119, can create a side channel. When the attacker and the victim share the…
- CVE-2024-22647MEDIUMCVSS 5.3EG 5.32024-01-30
An user enumeration vulnerability was found in SEO Panel 4.10.0. This issue occurs during user authentication, where a difference in error messages could allow an attacker to determine if a username is valid or not, enabling a brute-force …
- CVE-2023-47102MEDIUMCVSS 5.3EG 5.32023-11-07
UrBackup Server 2.5.31 allows brute-force enumeration of user accounts because a failure message confirms that a username is not valid.
- CVE-2023-5722MEDIUMCVSS 5.3EG 5.32023-10-25
Using iterative requests an attacker was able to learn the size of an opaque response, as well as the contents of a server-supplied Vary header. This vulnerability affects Firefox < 119.
- CVE-2023-43623MEDIUMCVSS 5.3EG 5.32023-10-10
A vulnerability has been identified in Mendix Forgot Password (Mendix 10 compatible) (All versions < V5.4.0), Mendix Forgot Password (Mendix 7 compatible) (All versions < V3.7.3), Mendix Forgot Password (Mendix 8 compatible) (All versions …
- CVE-2023-38871MEDIUMCVSS 5.3EG 5.32023-09-28
The commit 3730880 (April 2023) and v.0.9-beta1 of gugoan Economizzer has a user enumeration vulnerability in the login and forgot password functionalities. The app reacts differently when a user or email address is valid, and when it's no…
- CVE-2023-44216MEDIUMCVSS 5.3EG 5.32023-09-27
PVRIC (PowerVR Image Compression) on Imagination 2018 and later GPU devices offers software-transparent compression that enables cross-origin pixel-stealing attacks against feTurbulence and feBlend in the SVG Filter specification, aka a GP…
- CVE-2023-4095MEDIUMCVSS 5.3EG 5.32023-09-19
User enumeration vulnerability in Arconte Áurea 1.5.0.0 version. The exploitation of this vulnerability could allow an attacker to obtain a list of registered users in the application, obtaining the necessary information to perform more c…
- CVE-2023-41885MEDIUMCVSS 5.3EG 5.32023-09-12
Piccolo is an ORM and query builder which supports asyncio. In versions 0.120.0 and prior, the implementation of `BaseUser.login` leaks enough information to a malicious user such that they would be able to successfully generate a list of …
- CVE-2023-3221MEDIUMCVSS 5.3EG 5.32023-09-04
User enumeration vulnerability in Password Recovery plugin 1.2 version for Roundcube, which could allow a remote attacker to create a test script against the password recovery function to enumerate all users in the database.
- CVE-2023-39522MEDIUMCVSS 5.3EG 5.32023-08-29
goauthentik is an open-source Identity Provider. In affected versions using a recovery flow with an identification stage an attacker is able to determine if a username exists. Only setups configured with a recovery flow are impacted by thi…
- CVE-2023-40021MEDIUMCVSS 5.3EG 5.32023-08-16
Oppia is an online learning platform. When comparing a received CSRF token against the expected token, Oppia uses the string equality operator (`==`), which is not safe against timing attacks. By repeatedly submitting invalid tokens, an at…
- CVE-2023-3462MEDIUMCVSS 5.3EG 5.32023-07-31
HashiCorp's Vault and Vault Enterprise are vulnerable to user enumeration when using the LDAP auth method. An attacker may submit requests of existent and non-existent LDAP users and observe the response from Vault to check if the account …
- CVE-2023-37217MEDIUMCVSS 5.3EG 5.32023-07-30
Tadiran Telecom Aeonix - CWE-204: Observable Response Discrepancy
- CVE-2023-35698MEDIUMCVSS 5.3EG 5.32023-07-10
Observable Response Discrepancy in the SICK ICR890-4 could allow a remote attacker to identify valid usernames for the FTP server from the response given during a failed login attempt.
- CVE-2023-3529MEDIUMCVSS 5.3EG 5.32023-07-06
A vulnerability classified as problematic has been found in Rotem Dynamics Rotem CRM up to 20230729. This affects an unknown part of the file /LandingPages/api/otp/send?id=[ID][ampersand]method=sms of the component OTP URI Interface. The m…
Map vulnerabilities like CWE-203 to your infrastructure
EchelonGraph correlates every CVE — across CWE-203 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →