CWE-342 - Predictable Exact Value from Previous Values
- Abstraction:Base
- Structure:Simple
- Status:Draft
- Release Date:2006-07-19
- Latest Modification Date:2023-06-29
Weakness Name
Predictable Exact Value from Previous Values
Description
An exact value or random number can be precisely predicted by observing previous values.
Common Consequences
Scope: Other
Impact: Varies by Context
Related Weaknesses
Oracle denies breach after hacker claims theft of 6 million data records
CosmicSting flaw impacts 75% of Adobe Commerce, Magento sites
CrushFTP: Patch critical vulnerability ASAP! (CVE-2025-2825)
Oracle Health breach compromises patient data at US hospitals
New SuperBlack ransomware exploits Fortinet auth bypass flaws
Hackers Using E-Crime Tool Atlantis AIO for Credential Stuffing on 140+ Platforms
Oracle customers confirm data stolen in alleged cloud breach is valid
Microsoft confirms it's killing off Skype in May, after 14 years
CVE-2020-29574 CyberoamOS (CROS) SQL Injection Vulnerability
CVE-2025-22224 VMware ESXi and Workstation TOCTOU Race Condition Vulnerability
CVE-2022-43939 Hitachi Vantara Pentaho BA Server Authorization Bypass Vulnerability
CVE-2024-49035 Microsoft Partner Center Improper Access Control Vulnerability
CVE-2022-43769 Hitachi Vantara Pentaho BA Server Special Element Injection Vulnerability
CVE-2024-20953 Oracle Agile Product Lifecycle Management (PLM) Deserialization Vulnerability
CVE-2018-8639 Microsoft Windows Win32k Improper Resource Shutdown or Release Vulnerability
CVE-2024-41710 Mitel SIP Phones Argument Injection Vulnerability
CVE-2025-0111 Palo Alto Networks PAN-OS File Read Vulnerability
CVE-2025-2783 Google Chromium Mojo Sandbox Escape Vulnerability
HighOpen Redirect
InformationalSec-Fetch-Mode Header Has an Invalid Value
HighSession Fixation
InformationalUser Controllable JavaScript Event (XSS)