Skip to main content

Threats Tagged 'cwe-1191'

View all threats tagged with 'cwe-1191'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cwe-1191

Threats Tagged 'cwe-1191'

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-34494 is a high-severity vulnerability in the On-Chip Debug Interface of Johnson Controls Neo Series MVP2 devices before version 3.3b63. It allows unauthorized collection of data from common resource locations. The vulnerability has a CVSS 4.0 base score of 7.2, indicating a significant security risk. No official patch or remediation details are provided in the available data. The vulnerability requires high attack complexity and user interaction but does not require privileges or authentication.

Join the discussion

CVE-2026-34493 is a high-severity vulnerability in the On-Chip Debug Interface of Johnson Controls EasyIO FS32 devices before version 3.3b63. It allows unauthorized collection of data from common resource locations. The vulnerability has a CVSS 4.0 base score of 7.2, indicating significant impact but requiring high attack complexity and user interaction. A patch is available to address this issue. The product is a cloud service, so the vendor manages remediation server-side.

Join the discussion

The TP-Link Kasa EC70 V4 and EC71 V4 devices have an improper access control vulnerability in their on-chip debug and test interface. The production debug interface is not logically disabled at the firmware or chip level, and the bootloader is not locked. Although the debug traces are physically severed during manufacturing, an attacker with physical access can restore the connection, interrupt the boot process, and manipulate boot parameters to gain an unauthenticated root shell during startup. This allows root-level command access, compromising the device's confidentiality, integrity, and availability. Exploitation requires physical device disassembly and manipulation of hardware and boot processes.

Join the discussion

Dell Boot Optimized Server Storage (BOSS), versions prior to 2.2.13.2038, contains an On-Chip Debug and Test Interface With Improper Access Control vulnerability in the SMCU on 17G BOSS-N1 controllers. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Unauthorized access.

Join the discussion

Dell Boot Optimized Server Storage (BOSS), versions prior to 2.2.13.2038, contains an On-Chip Debug and Test Interface With Improper Access Control vulnerability in the SMCU on 17G BOSS-N1 controllers. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Unauthorized access.

Join the discussion

Dell Boot Optimized Server Storage (BOSS), versions prior to 2.2.13.2038, contains an On-Chip Debug and Test Interface With Improper Access Control vulnerability in the SMCU on 17G BOSS-N1 controllers. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Unauthorized access.

Join the discussion

CVE-2026-15203 is a critical vulnerability in Danfoss iC7-Automation SP, iC7-Marine, and iC7-Hybrid GR3 products. It involves improper access control in on-chip debug and test interfaces, allowing attackers to read and write internal values, upload and execute unsigned applications, and modify EEPROM data and firmware through exposed service interfaces and software update mechanisms. This vulnerability has a high CVSS 4.0 score of 9.3, indicating severe impact if exploited. No official patch or remediation guidance is currently available from the vendor. There are no known exploits in the wild at this time.

Join the discussion

Autel Maxi Charger Single firmware up to version 1.03.51 allows unrestricted physical access to the NXP i.MX6 recovery mode via exposed hardware recovery pins. This vulnerability enables an attacker with physical access to boot attacker-controlled code, potentially modifying or extracting firmware and sensitive data. The vulnerability is classified under CWE-1191 and CWE-1244 and has a high severity score of 8.6. No patch or official remediation has been confirmed as of the publication date.

Join the discussion

Autel MaxiCharger Single devices running firmware up to version 1.03.51 have an accessible UART interface that allows interruption of the boot process and access to the U-Boot bootloader. This vulnerability enables an attacker with physical access to modify the boot configuration or file system, potentially gaining operating system access. The vulnerability is classified as CWE-1191 and has a high severity with a CVSS score of 8.6. No official patch or remediation has been confirmed at this time.

Join the discussion

Debug code left active in AMD's Video Decoder Engine Firmware (VCN FW) could allow a attacker to submit a maliciously crafted command causing the VCN FW to perform read/writes HW registers, potentially impacting confidentiality, integrity and availabilability of the system.

Join the discussion

Showing 1 to 10 of 18 results

Filters:Tag: cwe-1191
Page 1 of 2
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses