VYPR

CWE-1299

Missing Protection Mechanism for Alternate Hardware Interface

BaseDraft

Description

The lack of protections on alternate paths to access control-protected assets (such as unprotected shadow registers and other external facing unguarded interfaces) allows an attacker to bypass existing protections to the asset that are only performed against the primary path.

Hierarchy (View 1000)

Children

none

Related attack patterns (CAPEC)

CAPEC-457 · CAPEC-554

CVEs mapped to this weakness (10)

  • CVE-2025-35998HigFeb 10, 2026
    risk 0.51cvss 7.9epss 0.00

    Missing protection mechanism for alternate hardware interface in the Intel(R) Quick Assist Technology for some Intel(R) Platforms within Ring 0: Kernel may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attack…

  • CVE-2025-1073HigApr 10, 2025
    risk 0.49cvss 7.5epss 0.00

    Panasonic IR Control Hub (IR Blaster) versions 1.17 and earlier may allow an attacker with physical access to load unauthorized firmware onto the device.

  • CVE-2025-41697MedDec 9, 2025
    risk 0.44cvss 6.8epss 0.00

    An attacker can use an undocumented UART port on the PCB as a side-channel to get root access e.g. with the credentials obtained from CVE-2025-41692.

  • CVE-2025-26409MedFeb 11, 2025
    risk 0.44cvss 6.8epss 0.00

    A serial interface can be accessed with physical access to the PCB of Wattsense Bridge devices. After connecting to the interface, access to the bootloader is possible, as well as a Linux login prompt. The bootloader access can be used to gain a root shell on the device. This…

  • CVE-2024-47944MedOct 15, 2024
    risk 0.44cvss 6.8epss 0.00

    The device directly executes .patch firmware upgrade files on a USB stick without any prior authentication in the admin interface. This leads to an unauthenticated code execution via the firmware upgrade function.

  • CVE-2021-3788MedNov 12, 2021
    risk 0.44cvss 6.8epss 0.00

    An exposed debug interface was reported in some Motorola-branded Binatone Hubble Cameras that could allow an attacker with physical access unauthorized access to the device.

  • CVE-2023-29060MedNov 28, 2023
    risk 0.35cvss 5.4epss 0.00

    The FACSChorus workstation operating system does not restrict what devices can interact with its USB ports. If exploited, a threat actor with physical access to the workstation could gain access to system information and potentially exfiltrate data.

  • CVE-2022-43557MedDec 5, 2022
    risk 0.34cvss 5.3epss 0.00

    The BD BodyGuard™ infusion pumps specified allow for access through the RS-232 (serial) port interface. If exploited, threat actors with physical access, specialized equipment and knowledge may be able to configure or disable the pump. No electronic protected health…

  • CVE-2024-39723MedJul 8, 2024
    risk 0.30cvss 4.6epss 0.00

    IBM FlashSystem 5300 USB ports may be usable even if the port has been disabled by the administrator. A user with physical access to the system could use the USB port to cause loss of access to data. IBM X-Force ID: 295935.

  • CVE-2023-29063LowNov 28, 2023
    risk 0.16cvss 2.4epss 0.00

    The FACSChorus workstation does not prevent physical access to its PCI express (PCIe) slots, which could allow a threat actor to insert a PCI card designed for memory capture. A threat actor can then isolate sensitive information such as a BitLocker encryption key from a dump of…