CWE-204

Observable Response Discrepancy

Parent: CWE-203 - Observable Discrepancy

The product provides different responses to incoming requests in a way that reveals internal state information to an unauthorized actor outside of the intended control sphere.

148 vulnerabilities with CWE-204
CVE-2025-67807 MEDIUM
Sage DPW <2021_06_000 - Info Disclosure
CVSS 4.7
CVE-2025-3716 MEDIUM
User enumeration in ESET Protect (on-prem)
CVE-2025-69243 MEDIUM
User enumeration in Raytha CMS
CVSS 5.3
CVE-2025-13460 MEDIUM
IBM Aspera Console Information Disclosure
CVSS 5.3
CVE-2025-12455 HIGH
OpenText Vertica 10.0-12.X - Password Brute Force
CVSS 7.5
CVE-2025-62512 MEDIUM
Piwigo 15.5.0 - Info Disclosure
CVSS 5.3
CVE-2025-69413 MEDIUM
Gitea <1.25.2 - Info Disclosure
CVSS 5.3
CVE-2025-67874 MEDIUM
Churchcrm < 6.5.0 - XSS
CVSS 6.5
CVE-2025-62181 MEDIUM
Pega Platform <25.1.0 - Info Disclosure
CVSS 5.3
CVE-2025-67500 LOW
Mastodon <4.2.27, <4.3.0-beta.1-4.3.14, <4.4.0-beta.1-4.4.9, <4.5.0...
CVSS 3.7
CVE-2025-40806 MEDIUM
Gridscale X Prepay <V4.2.1 - Info Disclosure
CVSS 5.3
CVE-2025-65899 MEDIUM
Kalmia CMS 0.2.0 - Info Disclosure
CVSS 5.3
CVE-2025-12994 MEDIUM
Medtronic CareLink Network <December 4, 2025 - Info Disclosure
CVSS 5.3
CVE-2025-66307 MEDIUM
Grav <1.11.0-beta.1 - Info Disclosure
CVSS 6.5
CVE-2025-59116 MEDIUM
Windu CMS <4.1 - Info Disclosure
CVSS 5.3
CVE-2025-25236 MEDIUM
Omnissa Workspace ONE UEM - Info Disclosure
CVSS 5.3
CVE-2025-62236 MEDIUM
Frontier Airlines - Info Disclosure
CVSS 5.3
CVE-2025-34155 MEDIUM
Tibbo AggreGate Network Manager < 6.40.05 - Info Disclosure
CVE-2025-34255 MEDIUM
D-Link Nuclias Connect <=1.3.1.4 - Info Disclosure
CVSS 5.3
CVE-2025-34254 MEDIUM
D-Link Nuclias Connect <=1.3.1.4 - Info Disclosure
CVSS 5.3
CVE-2025-61907 MEDIUM
Icinga < 2.13.13 - Information Disclosure
CVSS 6.5
CVE-2025-61789 MEDIUM
Icinga DB Web <1.1.4-1.2.3 - Info Disclosure
CVSS 5.3
CVE-2025-42903 MEDIUM
SAP Financial Service Claims Management - Info Disclosure
CVSS 4.3
CVE-2025-58586 MEDIUM
Sick Analytics Products - Username Enumeration via Different Error Messages
CVSS 5.3
CVE-2025-56764 MEDIUM
Trivision NC-227WF <5.80 - Info Disclosure
CVSS 5.3
Details
Vulnerabilities 148