CWE-203

Observable Discrepancy

Parent: CWE-200 - Exposure of Sensitive Information to an Unauthorized Actor

The product behaves differently or sends different responses under different circumstances in a way that is observable to an unauthorized actor.

733 vulnerabilities with CWE-203
CVE-2023-21350 MEDIUM
Android - Local Information Disclosure via Media Projection Side Channel
CVSS 5.5
CVE-2023-21349 LOW
Android < 14.0 - Unauthenticated App Installation Status Disclosure via Package Manager Side Channel
CVSS 3.3
CVE-2023-21348 LOW
Android < 14.0 - Unauthenticated App Presence Detection via Window Manager Side Channel
CVSS 3.3
CVE-2023-21346 LOW
Android < 14.0 - Unauthenticated App Installation Detection via Device Idle Controller Side Channel
CVSS 3.3
CVE-2023-21345 LOW
Android < 14.0 - Unauthenticated Local Information Disclosure via Game Manager Service
CVSS 3.3
CVE-2023-21344 MEDIUM
Android < 14.0 - Unauthenticated App Presence Detection via Job Scheduler Side Channel
CVSS 5.5
CVE-2023-21338 MEDIUM
Android < 14.0 - Local Escalation of Privilege via Input Method Side Channel
CVSS 5.5
CVE-2023-21337 HIGH
Android < 14.0 - Unauthenticated App Installation Detection via InputMethod Side Channel
CVSS 7.8
CVE-2023-21336 MEDIUM
Android < 14.0 - Unauthenticated App Installation Status Disclosure via Input Method Side Channel
CVSS 5.5
CVE-2023-21335 MEDIUM
Android < 14.0 - Unauthenticated Local Information Disclosure via App Installation Side Channel
CVSS 5.5
CVE-2023-21333 MEDIUM
Android < 14.0 - Unauthenticated App Installation Status Disclosure via Text Services Side Channel
CVSS 5.5
CVE-2023-21332 MEDIUM
Android < 14.0 - Unauthenticated App Installation Status Disclosure via Text Services Side Channel
CVSS 5.5
CVE-2023-21331 MEDIUM
Android < 14.0 - Unauthenticated Local Information Disclosure via InputMethod Side Channel
CVSS 5.5
CVE-2023-21330 MEDIUM
Android < 14.0 - Unauthenticated Local Information Disclosure via Overlay Manager Side Channel
CVSS 5.5
CVE-2023-21327 MEDIUM
Android < 14.0 - Unauthenticated App Installation Status Disclosure via Permission Manager Side Channel
CVSS 5.5
CVE-2023-21326 MEDIUM
Android < 14.0 - Unauthenticated App Installation Status Disclosure via Package Manager Side Channel
CVSS 5.5
CVE-2023-21325 MEDIUM
Android < 14.0 - Unauthenticated App Installation Status Disclosure via Settings Side Channel
CVSS 5.5
CVE-2023-21324 HIGH
Android < 14.0 - Unauthenticated App Presence Detection via Package Installer Side Channel
CVSS 7.8
CVE-2023-21323 MEDIUM
Android < 14.0 - Unauthenticated App Installation Status Disclosure via Activity Manager Side Channel
CVSS 5.5
CVE-2023-21320 MEDIUM
Android < 14.0 - Unauthenticated Local Information Disclosure via Device Policy Admin App Verification
CVSS 5.5
CVE-2023-21319 MEDIUM
Android < 14.0 - Local Information Disclosure via UsageStatsService Side Channel
CVSS 5.5
CVE-2023-21318 MEDIUM
Android < 14.0 - Unauthenticated App Installation Status Disclosure via Content Side Channel
CVSS 5.5
CVE-2023-21317 MEDIUM
Android < 14.0 - Unauthenticated App Installation Status Disclosure via ContentService Side Channel
CVSS 5.5
CVE-2023-21316 MEDIUM
Android < 14.0 - Unauthenticated App Installation Status Disclosure via Content Side Channel
CVSS 5.5
CVE-2023-21306 MEDIUM
Android < 14.0 - Local Information Disclosure via ContentService Side Channel
CVSS 5.5
Details
Vulnerabilities 733