CWE-1072Base

Data Resource Access without Use of Connection Pooling

Incomplete in the CWE catalog · 1 CVE mapped

1
CVEs mapped
5.4
Median CVSS
What it is

The product accesses a data resource through a database without using a

connection pooling capability.

Recent examples
5.4cvss
CVE-2026-0438

A System Management Mode (SMM) handler could perform a callout to code located in non-SMM/untrusted memory

A System Management Mode (SMM) handler could perform a callout to code located in non-SMM/untrusted memory. A highly privileged attacker could, with active user interaction and under high complexity and present preconditions, trigger execution of attacker-controlled code in SMM, potentially compromising the system’s confidentiality, integrity, and availability.

MEDIUMno explanation yet
0%
epss
The record
Technical detail
CWE ID
CWE-1072
Abstraction
Base
Structure
Simple
Status
Incomplete
References (2)