Common Weakness Enumeration

    CWE Definition / CWE-1274

    CWE-1274: Improper Access Control for Volatile Memory Containing Boot Code

    The product conducts a secure-boot process that transfers bootloader code from Non-Volatile Memory (NVM) into Volatile Memory (VM), but it does not have sufficient access control or other protections for the Volatile Memory.

    Published:25 Apr 2020
    Organization:MITRE
    Modified:11 Dec 2025

    Related Weakness

    CWE-284: Improper Access Control