CWE-207: Observable Behavioral Discrepancy With Equivalent Products
low-riskThe product operates in an environment in which its existence or specific identity should not be known, but it behaves differently than other products with equivalent functionality, in a way that is observable to an attacker.
Abstraction: Variant
Common Consequences
Confidentiality
→
Read Application Data
Real-World Examples (1)
| CVE | CVSS | EPSS | KEV |
|---|---|---|---|
| CVE-2025-41657 | 4.3 | 0.1% | — |
0
/ 100
low-risk
Active Threat
0/50 · Minimal
Exploit Availability
0/50 · Minimal