Common Weakness Enumeration

    CWE Definition / CWE-1299

    CWE-1299: Missing Protection Mechanism for Alternate Hardware Interface

    The lack of protections on alternate paths to access control-protected assets (such as unprotected shadow registers and other external facing unguarded interfaces) allows an attacker to bypass existing protections to the asset that are only performed against the primary path.

    Published:2 Oct 2019
    Organization:MITRE
    Modified:11 Dec 2025

    Related Weakness

    CWE-1191: On-Chip Debug and Test Interface With Improper Access Control

    CWE-420: Unprotected Alternate Channel

    CWE-288: Authentication Bypass Using an Alternate Path or Channel