CWE-1221Base

Incorrect Register Defaults or Module Parameters

Incomplete in the CWE catalog · 2 CVEs mapped

2
CVEs mapped
4.6
Median CVSS
What it is

Hardware description language code incorrectly defines register defaults or hardware Intellectual Property (IP) parameters to insecure values.

Recent examples
4.6cvss
CVE-2022-20731

Cisco Catalyst Digital Building Series Switches and Cisco Catalyst Micro Switches Vulnerabilities

Multiple vulnerabilities that affect Cisco Catalyst Digital Building Series Switches and Cisco Catalyst Micro Switches could allow an attacker to execute persistent code at boot time or to permanently prevent the device from booting, resulting in a permanent denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory.

MEDIUMno explanation yet
0%
epss
4.6cvss
CVE-2022-20661

Cisco Catalyst Digital Building Series Switches and Cisco Catalyst Micro Switches Vulnerabilities

Multiple vulnerabilities that affect Cisco Catalyst Digital Building Series Switches and Cisco Catalyst Micro Switches could allow an attacker to execute persistent code at boot time or to permanently prevent the device from booting, resulting in a permanent denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory.

MEDIUMno explanation yet
0%
epss
The record
Technical detail
CWE ID
CWE-1221
Abstraction
Base
Structure
Simple
Status
Incomplete
References (5)