Compliance Node Overview
MITRE CAPEC-682 (Exploitation of Firmware or ROM Code with Unpatchable Vulnerabilities) is a standard-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary may exploit vulnerable code (i.e., firmware or ROM) that is unpatchable. Unpatchable devices exist due to manufacturers intentionally or inadvertently designing devices incapable of updating their software. Additionally, with updatable devices, the manufacturer may decide not to support the device and stop making updates to their software. Likelihood of attack: Medium. Typical severity: High. Maps to weaknesses CWE-1277, CWE-1310.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/682.html
SHA-256 integrity: 720fb411b9ebce7691a03ceed61955f854d34543123e8ac2dca5ec5e4d239df9
Primary Citations — 8 traced to source
- MITRE CAPEC-682: Exploitation of Firmware or ROM Code with Unpatchable Vulnerabilities (https://capec.mitre.org/data/definitions/682.html)
- CWE-1277: underlying weakness (http://cwe.mitre.org/data/definitions/1277.html)
+ 6 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.