CWE•Base•Incomplete•20 recent CVEs
CWE-203Observable Discrepancy
Description
The product behaves differently or sends different responses under different circumstances in a way that is observable to an unauthorized actor.
Common consequences
- Confidentiality,Access Control→Read Application Data,Bypass Protection MechanismAn attacker can gain access to sensitive information about the system, including authentication information that may allow an attacker to gain access to the system. Other security-relevant information about the operation or internal state o
- Confidentiality→Read Application DataIn some cases, discrepancies can be used by attackers to form a side channel. When cryptographic primitives are vulnerable to side-channel attacks, this could be used to reveal unencrypted plaintext in the worst case.
Potential mitigations
- Architecture and Design[object Object]
- Implementation[object Object]
Related CWEs
Recent CVEs classified under this CWE
CVE-2026-112896.52026-06-05CVE-2026-112846.52026-06-05CVE-2026-452945.32026-05-29CVE-2026-454105.32026-05-28CVE-2026-82423.72026-05-10CVE-2026-415889.02026-05-08CVE-2026-442634.32026-05-07CVE-2026-268955.32026-04-02CVE-2025-678063.72026-04-01CVE-2026-40453.72026-03-12CVE-2025-111457.52025-10-24CVE-2025-114433.72025-10-08CVE-2025-90314.32025-09-24CVE-2025-397027.02025-09-05CVE-2025-91093.72025-08-18CVE-2025-87742.52025-08-09CVE-2024-112975.32024-12-20CVE-2023-507817.52024-02-05CVE-2024-231705.52024-01-31CVE-2023-356985.32023-07-10