CWE-756— Missing Custom Error Page
The product does not return custom error pages to the user, possibly exposing sensitive information.— MITRE CWE catalog
3 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-756page 1 of 1
- CVE-2018-8913HIGHCVSS 7.1EG 7.12019-04-01
Missing custom error page vulnerability in Synology Web Station before 2.1.3-0139 allows remote attackers to conduct phishing attacks via a crafted URL.
- CVE-2023-27998MEDIUMCVSS 5.3EG 5.32023-09-13
A lack of custom error pages vulnerability [CWE-756] in FortiPresence versions 1.2.0 through 1.2.1 and all versions of 1.1 and 1.0 may allow an unauthenticated attacker with the ability to navigate to the login GUI to gain sensitive inform…
- CVE-2022-3175MEDIUMCVSS 5.3EG 5.32022-09-13
Missing Custom Error Page in GitHub repository ikus060/rdiffweb prior to 2.4.2.
Map vulnerabilities like CWE-756 to your infrastructure
EchelonGraph correlates every CVE — across CWE-756 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →