Detailedlikelihood: Mediumseverity: HighStable
CAPEC-105HTTP Request Splitting
Abstraction
Detailed
Status
Stable
Likelihood
Medium
Severity
High
Description
Metadata: detailed CAPEC pattern, status stable, likelihood medium, severity high. Underlying weaknesses: CWE-74, CWE-113, CWE-138, CWE-436. Related CAPEC patterns: [object Object], [object Object], [object Object], [object Object] (and 4 more).
Metadata: detailed CAPEC pattern, status stable, likelihood medium, severity high. Underlying weaknesses: CWE-74, CWE-113, CWE-138, CWE-436. Related CAPEC patterns: [object Object], [object Object], [object Object], [object Object] (and 4 more).
Related weaknesses· 4
Related attack patterns· 8
Exploits4
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')cwe-74 | 100% | live |
| Weakness | Improper Neutralization of Special Elementscwe-138 | 100% | live |
| Weakness | Interpretation Conflictcwe-436 | 100% | live |
| Weakness | Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Request/Response Splitting')cwe-113 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.