CWE-1234Base

Hardware Internal or Debug Modes Allow Override of Locks

Incomplete in the CWE catalog · 4 CVEs mapped

4
CVEs mapped
6.5
Median CVSS
What it is

System configuration protection may be bypassed during debug mode.

Recent examples
5.9cvss
CVE-2025-33242

NVIDIA B300 MCU contains a vulnerability in the CX8 MCU that could allow a malicious actor to modify unsupported registries, causing a bad state

NVIDIA B300 MCU contains a vulnerability in the CX8 MCU that could allow a malicious actor to modify unsupported registries, causing a bad state. A successful exploit of this vulnerability might lead to denial of service and data tampering.

MEDIUMno explanation yet
0%
epss
7.0cvss
CVE-2025-59104

Unlocked Bootloader in dormakaba access manager

With physical access to the device and enough time an attacker is able to solder test leads to the debug footprint (or use the 6-Pin tag-connect cable). Thus, the attacker gains access to the bootloader, where the kernel command line can be changed. An attacker is able to gain a root shell through this vulnerability.

HIGHno explanation yet
0%
epss
3.6cvss
CVE-2023-44298

Dell PowerEdge platforms 16G Intel E5 BIOS and Dell Precision BIOS, version 1.4.4, contain active debug code security vulnerability

Dell PowerEdge platforms 16G Intel E5 BIOS and Dell Precision BIOS, version 1.4.4, contain active debug code security vulnerability. An unauthenticated physical attacker could potentially exploit this vulnerability, leading to information tampering, code execution, denial of service.

LOWno explanation yet
0%
epss
The record
Technical detail
CWE ID
CWE-1234
Abstraction
Base
Structure
Simple
Status
Incomplete
References (2)