Detailedlikelihood: Mediumseverity: Very HighDraft

CAPEC-681Exploitation of Improperly Controlled Hardware Security Identifiers

Abstraction
Detailed
Status
Draft
Likelihood
Medium
Severity
Very High

Description

Metadata: detailed CAPEC pattern, status draft, likelihood medium, severity very high. Underlying weaknesses: CWE-1259, CWE-1267, CWE-1270, CWE-1294, CWE-1302. Related CAPEC patterns: [object Object], [object Object]. Metadata: detailed CAPEC pattern, status draft, likelihood medium, severity very high. Underlying weaknesses: CWE-1259, CWE-1267, CWE-1270, CWE-1294, CWE-1302. Related CAPEC patterns: [object Object], [object Object].

Related weaknesses· 5

CWE-1259CWE-1267CWE-1270CWE-1294CWE-1302

Related attack patterns· 2

CAPEC-1 (ChildOf)CAPEC-180 (ChildOf)

Exploits5

TypeTargetConfidenceTier
WeaknessGeneration of Incorrect Security Tokenscwe-1270100%live
WeaknessPolicy Uses Obsolete Encodingcwe-1267100%live
WeaknessImproper Restriction of Security Token Assignmentcwe-1259100%live
WeaknessInsecure Security Identifier Mechanismcwe-1294100%live
WeaknessMissing Source Identifier in Entity Transactions on a System-On-Chip (SOC)cwe-1302100%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CAPEC
Exploitation of Improperly Controlled Registers
CAPEC
Exploitation of Improperly Configured or Implemented Memory Protections
CAPEC
Exploitation of Trusted Identifiers
CAPEC
Exploit Non-Production Interfaces
CAPEC
Exploiting Incorrect Chaining or Granularity of Hardware Debug Components
CAPEC
Malicious Code Implanted During Chip Programming
Sourced from MITRE CAPEC. Curated by Adam Lundqvist, SQUR.