Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Attack Patterns CAPEC-682 — Exploitation of Firmware or ROM Code with Unpatchable Vulnerabilities
CAPEC-682

Exploitation of Firmware or ROM Code with Unpatchable Vulnerabilities

TLP:CLEAR

Description

Typical severity: High. Likelihood of attack: Medium. An adversary may exploit vulnerable code (i.e., firmware or ROM) that is unpatchable. Unpatchable devices exist due to manufacturers intentionally or inadvertently designing devices incapable of updating their software. Additionally, with updatable devices, the manufacturer may decide not to support the device and stop making updates to their software.

Mitigation

Design systems and products with the ability to patch firmware or ROM code after deployment to fix vulnerabilities. | Make use of OTA (Over-the-air) updates so that firmware can be patched remotely either through manual or automatic means

Details

Platforms
Software
Hardware
Added
Jul 14, 2026
Leaving Threaticon

This link opens an external site that isn't part of the platform.