| CWE |
Name |
|
Actions |
| CWE-1352 |
OWASP Top Ten 2021 Category A06:2021 - Vulnerable and Outdated Components |
|
|
| CWE-1351 |
Improper Handling of Hardware Behavior in Exceptionally Cold Environments |
|
|
| CWE-135 |
Incorrect Calculation of Multi-Byte String Length |
|
|
| CWE-1349 |
OWASP Top Ten 2021 Category A05:2021 - Security Misconfiguration |
|
|
| CWE-1348 |
OWASP Top Ten 2021 Category A04:2021 - Insecure Design |
|
|
| CWE-1347 |
OWASP Top Ten 2021 Category A03:2021 - Injection |
|
|
| CWE-1346 |
OWASP Top Ten 2021 Category A02:2021 - Cryptographic Failures |
|
|
| CWE-1345 |
OWASP Top Ten 2021 Category A01:2021 - Broken Access Control |
|
|
| CWE-1342 |
Information Exposure through Microarchitectural State after Transient Execution |
|
|
| CWE-1341 |
Multiple Releases of Same Resource or Handle |
|
|
| CWE-134 |
Use of Externally-Controlled Format String |
|
|
| CWE-1339 |
Insufficient Precision or Accuracy of a Real Number |
|
|
| CWE-1338 |
Improper Protections Against Hardware Overheating |
|
|
| CWE-1336 |
Improper Neutralization of Special Elements Used in a Template Engine |
|
|
| CWE-1335 |
Incorrect Bitwise Shift of Integer |
|
|
| CWE-1334 |
Unauthorized Error Injection Can Degrade Hardware Redundancy |
|
|
| CWE-1333 |
Inefficient Regular Expression Complexity |
|
|
| CWE-1332 |
Improper Handling of Faults that Lead to Instruction Skips |
|
|
| CWE-1331 |
Improper Isolation of Shared Resources in Network On Chip (NoC) |
|
|
| CWE-1330 |
Remanent Data Readable after Memory Erase |
|
|
| CWE-133 |
String Errors |
|
|
| CWE-1329 |
Reliance on Component That is Not Updateable |
|
|
| CWE-1328 |
Security Version Number Mutable to Older Versions |
|
|
| CWE-1327 |
Binding to an Unrestricted IP Address |
|
|
| CWE-1326 |
Missing Immutable Root of Trust in Hardware |
|
|
| CWE-1325 |
Improperly Controlled Sequential Memory Allocation |
|
|
| CWE-1324 |
DEPRECATED: Sensitive Information Accessible by Physical Probing of JTAG Interface |
|
|
| CWE-1323 |
Improper Management of Sensitive Trace Data |
|
|
| CWE-1322 |
Use of Blocking Code in Single-threaded, Non-blocking Context |
|
|
| CWE-1321 |
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') |
|
|
| CWE-1320 |
Improper Protection for Outbound Error Messages and Alert Signals |
|
|
| CWE-132 |
DEPRECATED: Miscalculated Null Termination |
|
|
| CWE-1319 |
Improper Protection against Electromagnetic Fault Injection (EM-FI) |
|
|
| CWE-1318 |
Missing Support for Security Features in On-chip Fabrics or Buses |
|
|
| CWE-1317 |
Improper Access Control in Fabric Bridge |
|
|
| CWE-1316 |
Fabric-Address Map Allows Programming of Unwarranted Overlaps of Protected and Unprotected Ranges |
|
|
| CWE-1315 |
Improper Setting of Bus Controlling Capability in Fabric End-point |
|
|
| CWE-1314 |
Missing Write Protection for Parametric Data Values |
|
|
| CWE-1313 |
Hardware Allows Activation of Test or Debug Logic at Runtime |
|
|
| CWE-1312 |
Missing Protection for Mirrored Regions in On-Chip Fabric Firewall |
|
|