CWE-203
Observable Discrepancy
The product behaves differently or sends different responses under different circumstances in a way that is observable to an unauthorized actor.
733 vulnerabilities with CWE-203
CVE-2024-47149
LOW
Honor <version> - Privilege Escalation
CVSS 3.3
CVE-2024-8994
MEDIUM
Honor MagicOS 8.0-8.0.0.159 - Information Disclosure
CVSS 6.2
CVE-2024-8993
MEDIUM
Honor MagicOS 8.0-8.0.0.159 - Information Disclosure
CVSS 6.2
CVE-2024-8992
MEDIUM
Honor MagicOS 8.0-8.0.0.159 - Information Disclosure
CVSS 4.0
CVE-2024-47155
MEDIUM
Honor MagicOS 8.0-8.0.0.135 - Information Disclosure
CVSS 5.5
CVE-2024-47154
MEDIUM
Honor MagicOS 8.0-8.0.0.173 - Information Disclosure
CVSS 5.5
CVE-2024-47153
MEDIUM
Honor MagicOS 8.0-8.0.0.159 - Information Disclosure
CVSS 6.2
CVE-2024-47156
LOW
Honor MagicOS 8.0-8.0.0.135 - Information Disclosure
CVSS 3.3
CVE-2024-11297
MEDIUM
Page Restriction WordPress < 1.3.6 - Unauthenticated Sensitive Information Exposure via WordPress Core Search
CVSS 5.3
CVE-2024-12663
LOW
Mee-Admin <= 1.6 - Observable Response Discrepancy via Login Username Parameter
CVSS 3.7
CVE-2024-54476
MEDIUM
macOS < 13.7.2, < 14.7.2, < 15.2 - Unprotected User Data Exposure
CVSS 5.5
CVE-2024-54002
MEDIUM
DependencyTrack < 4.12.2 - Username Enumeration via Login Timing Discrepancy
CVSS 5.3
CVE-2024-28885
MEDIUM
Intel(R) QAT Engine <v1.6.1 - Info Disclosure
CVSS 5.9
CVE-2024-51739
HIGH
Combodo iTop < 2.7.11 - Unauthenticated User Enumeration via Password Reset Error Message
CVSS 7.5
CVE-2024-50102
MEDIUM
Linux Kernel 6.4-6.11.6 - Information Leak via Non-Canonical Address Speculation
CVSS 5.5
CVE-2024-41741
MEDIUM
IBM TXSeries for Multiplatforms 10.1 - Info Disclosure
CVSS 5.3
CVE-2024-40490
HIGH
Sourcebans++ <1.8.0 - Info Disclosure
CVSS 7.5
CVE-2024-7010
MEDIUM
mudler/localai <2.17.1 - Info Disclosure
CVSS 5.9
CVE-2024-10463
MEDIUM
Firefox < 132 and ESR < 128.4 - Cross-Origin Video Frame Leak
CVSS 6.5
CVE-2024-49358
MEDIUM
ZimaOS < 1.2.5 - Username Enumeration via Login Endpoint Response Discrepancy
CVSS 5.3
CVE-2024-50383
MEDIUM
Botan < 3.6.0 - Secret-Dependent Timing Discrepancy in donna128
CVSS 5.9
CVE-2024-50382
MEDIUM
Botan < 3.6.0 - Observable Discrepancy in GHASH via LLVM Compiler Optimization
CVSS 5.9
CVE-2024-48644
MEDIUM
Reolink Duo 2 WiFi Camera v3.0.0.1889_23031701 - Info Disclosure
CVSS 5.3
CVE-2024-47678
MEDIUM
Linux Kernel - Observable Discrepancy via ICMP Rate Limit Order
CVSS 5.5
CVE-2024-21251
LOW
Oracle Database Server 19.3-19.24, 21.3-21.15, 23.4-23.5 - Authenticated Data Manipulation in Java VM
CVSS 3.1
Details
Vulnerabilities
733