BaseIncomplete
CWE-204Observable Response Discrepancy
Category: other
Description
The product provides different responses to incoming requests in a way that reveals internal state information to an unauthorized actor outside of the intended control sphere.
Common consequences· 1
- Confidentiality / Access Control — Read Application Data, Bypass Protection Mechanism
Potential mitigations· 2
- [Architecture and Design]
- [Implementation]
Related CAPEC attack patterns· 4
References
Exploits (incoming)4
| Type | Target | Confidence | Tier |
|---|---|---|---|
| AttackPattern | ICMP IP 'ID' Field Error Message Probecapec-332 | 100% | live |
| AttackPattern | System Footprintingcapec-580 | 100% | live |
| AttackPattern | Application Fingerprintingcapec-541 | 100% | live |
| AttackPattern | ICMP IP Total Length Field Probecapec-331 | 100% | live |
(incoming)1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Vulnerability | CVE-2025-5485cve-2025-5485 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.