VYPR

CWE-1191

On-Chip Debug and Test Interface With Improper Access Control

BaseStable

Description

The chip does not implement or does not correctly perform access control to check whether users are authorized to access internal registers and test modes through the physical debug/test interface.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-1 · CAPEC-180

CVEs mapped to this weakness (22)

page 2 of 2
  • CVE-2025-36755LowDec 12, 2025
    risk 0.16cvss epss 0.00

    The CleverDisplay BlueOne hardware player is designed with its USB interfaces physically enclosed and inaccessible under normal operating conditions. Researchers demonstrated that, after cicumventing the device’s protective enclosure, it was possible to connect a USB keyboard…

  • CVE-2025-15083LowDec 25, 2025
    risk 0.13cvss 2.0epss 0.00

    A vulnerability was determined in TOZED ZLT M30s up to 1.47. The affected element is an unknown function of the component UART Interface. Executing manipulation can lead to on-chip debug and test interface with improper access control. The physical device can be targeted for the…