BaseIncomplete
CWE-1243Sensitive Non-Volatile Information Not Protected During Debug
Category: data-exposure
Description
Access to security-sensitive information stored in fuses is not limited during debug.
Common consequences· 1
- Confidentiality / Access Control — Modify Memory, Read Memory, Bypass Protection MechanismIf these locations are not blocked during debug operations, it can allow a user to access this sensitive information.
Potential mitigations· 1
- [Architecture and Design, Implementation]
Related CAPEC attack patterns· 2
References
Exploits (incoming)2
| Type | Target | Confidence | Tier |
|---|---|---|---|
| AttackPattern | Excavationcapec-116 | 100% | live |
| AttackPattern | Pull Data from System Resourcescapec-545 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.