CWE-1317

Improper Access Control in Fabric Bridge

Medium

Description

The product uses a fabric bridge for transactions between two Intellectual Property (IP) blocks, but the bridge does not properly perform the expected privilege, identity, or other access control checks between those IP blocks.

Potential Impact

How to Fix

Architecture and Design

Ensure that the design includes provisions for access-control checks in the bridge for both upstream and downstream transactions.

Implementation

Implement access-control checks in the bridge for both upstream and downstream transactions.

Detection Methods

Related Weaknesses

References

View on MITRE CWE Database →

Need Help Fixing This Vulnerability?

Our security experts can help you identify and remediate CWE-1317 vulnerabilities in your codebase.

Get Security Assessment