BaseDraft
CWE-1193Power-On of Untrusted Execution Core Before Enabling Fabric Access Control
Category: other
Description
The product enables components that contain untrusted firmware before memory and fabric access controls have been enabled.
Common consequences· 1
- Access Control — Bypass Protection MechanismAn untrusted component can master transactions on the HW bus and target memory or other assets to compromise the SoC boot firmware.
Potential mitigations· 1
- [Architecture and Design]
Related CAPEC attack patterns· 2
References
Exploits (incoming)2
| Type | Target | Confidence | Tier |
|---|---|---|---|
| AttackPattern | Exploiting Incorrectly Configured Access Control Security Levelscapec-180 | 100% | live |
| AttackPattern | Accessing Functionality Not Properly Constrained by ACLscapec-1 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.