Vulnerabilities > Response Discrepancy Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2024-11-15 CVE-2022-20633 A vulnerability in the web-based management interface of Cisco ECE could allow an unauthenticated, remote attacker to perform a username enumeration attack against an affected device. This vulnerability is due to differences in authentication responses that are sent back from the application as part of an authentication attempt.
network
low complexity
CWE-204
5.3
2024-07-10 CVE-2023-33859 Response Discrepancy Information Exposure vulnerability in IBM Security Qradar EDR 3.12
IBM Security QRadar EDR 3.12 could disclose sensitive information due to an observable login response discrepancy.
network
low complexity
ibm CWE-204
5.3
2023-08-25 CVE-2023-40179 Response Discrepancy Information Exposure vulnerability in Silverwaregames 1.1.8/1.1.9
Silverware Games is a premium social network where people can play games online.
network
low complexity
silverwaregames CWE-204
5.3
2023-08-04 CVE-2023-39343 Response Discrepancy Information Exposure vulnerability in Sulu
Sulu is an open-source PHP content management system based on the Symfony framework.
network
low complexity
sulu CWE-204
4.3
2023-05-22 CVE-2023-32346 Response Discrepancy Information Exposure vulnerability in Teltonika Remote Management System
Teltonika’s Remote Management System versions prior to 4.10.0 contain a function that allows users to claim their devices.
network
low complexity
teltonika CWE-204
5.3
2022-12-22 CVE-2022-41697 Response Discrepancy Information Exposure vulnerability in Ghost 5.9.4
A user enumeration vulnerability exists in the login functionality of Ghost Foundation Ghost 5.9.4.
network
low complexity
ghost CWE-204
5.3
2022-09-14 CVE-2022-22520 Response Discrepancy Information Exposure vulnerability in multiple products
A remote, unauthenticated attacker can enumerate valid users by sending specific requests to the webservice of MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2.
network
low complexity
mbconnectline helmholz CWE-204
5.3
2022-06-22 CVE-2022-31248 Response Discrepancy Information Exposure vulnerability in Suse Manager Server 4.1/4.2
A Observable Response Discrepancy vulnerability in spacewalk-java of SUSE Manager Server 4.1, SUSE Manager Server 4.2 allows remote attackers to discover valid usernames.
network
low complexity
suse CWE-204
5.0