BaseDraft
CWE-420Unprotected Alternate Channel
Category: other
Description
The product protects a primary channel, but it does not use the same level of protection for an alternate channel.
Common consequences· 1
- Access Control — Gain Privileges or Assume Identity, Bypass Protection Mechanism
Potential mitigations· 1
- [Architecture and Design]Identify all alternate channels and use the same protection mechanisms that are used for the primary channels.
References
(incoming)10
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Vulnerability | CVE-2025-13315cve-2025-13315 | 0% | live |
| Vulnerability | CVE-2025-52921cve-2025-52921 | 0% | live |
| Vulnerability | CVE-2025-53967cve-2025-53967 | 0% | live |
| Vulnerability | CrushFTP Unprotected Alternate Channel Vulnerabilitycve-2025-54309 | 0% | live |
| Vulnerability | CVE-2025-54351cve-2025-54351 | 0% | live |
| Vulnerability | CVE-2025-62001cve-2025-62001 | 0% | live |
| Vulnerability | CVE-2025-8557cve-2025-8557 | 0% | live |
| Vulnerability | CVE-2026-40217cve-2026-40217 | 0% | live |
| KEVEntry | Cisco IOS XE Web UI Privilege Escalation Vulnerabilitykev-cve-2023-20198 | 0% | live |
| KEVEntry | CrushFTP Unprotected Alternate Channel Vulnerabilitykev-cve-2025-54309 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.