Standardlikelihood: Mediumseverity: HighDraft
CAPEC-682Exploitation of Firmware or ROM Code with Unpatchable Vulnerabilities
Abstraction
Standard
Status
Draft
Likelihood
Medium
Severity
High
Description
An adversary may exploit vulnerable code (i.e., firmware or ROM) that is unpatchable. Unpatchable devices exist due to manufacturers intentionally or inadvertently designing devices incapable of updating their software. Additionally, with updatable devices, the manufacturer may decide not to support the device and stop making updates to their software.
Related weaknesses· 2
Related attack patterns· 1
Exploits2
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Firmware Not Updateablecwe-1277 | 100% | live |
| Weakness | Missing Ability to Patch ROM Codecwe-1310 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.