CWE-1326: Missing Immutable Root of Trust in Hardware
A missing immutable root of trust in the hardware results in the ability to bypass secure boot or execute untrusted or adversarial boot code.
9 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2025-2762 — CarlinKit CPC200-CCPA Missing Root of Trust Local Privilege Escalation Vulnerability
- CVE-2024-32742 — A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0). The affected device contains an unrestrict
- CVE-2025-34503 — Shuffle Master Deck Mate 1 Unauthenticated EEPROM Firmware Execution
- CVE-2025-34502 — Shuffle Master Deck Mate 2 Missing Secure Boot
- CVE-2025-5834 — Pioneer DMH-WT7600NEX Missing Immutable Root of Trust in Hardware Local Privilege Escalation Vulnerability
- CVE-2025-31929 — A vulnerability has been identified in IEC 1Ph 7.4kW Child socket (8EM1310-2EH04-0GA0) (All versions), IEC 1Ph 7.4kW Chi
Recently published
- CVE-2025-34503 — Shuffle Master Deck Mate 1 Unauthenticated EEPROM Firmware Execution
- CVE-2025-34502 — Shuffle Master Deck Mate 2 Missing Secure Boot
- CVE-2025-5834 — Pioneer DMH-WT7600NEX Missing Immutable Root of Trust in Hardware Local Privilege Escalation Vulnerability
- CVE-2025-31929 — A vulnerability has been identified in IEC 1Ph 7.4kW Child socket (8EM1310-2EH04-0GA0) (All versions), IEC 1Ph 7.4kW Chi
- CVE-2025-2762 — CarlinKit CPC200-CCPA Missing Root of Trust Local Privilege Escalation Vulnerability
- CVE-2024-32742 — A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0). The affected device contains an unrestrict