Metalikelihood: Highseverity: MediumDraft
CAPEC-122Privilege Abuse
Abstraction
Meta
Status
Draft
Likelihood
High
Severity
Medium
Description
An adversary is able to exploit features of the target that should be reserved for privileged users or administrators but are exposed to use by lower or non-privileged accounts. Access to sensitive information and functionality must be controlled to ensure that only authorized users are able to access these resources.
Related weaknesses· 3
MITRE ATT&CK crosswalk· 1
Related attack patterns· 1
Exploits3
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Improper Access Control in Fabric Bridgecwe-1317 | 100% | live |
| Weakness | Improper Privilege Managementcwe-269 | 100% | live |
| Weakness | Incorrect Permission Assignment for Critical Resourcecwe-732 | 100% | live |
Related to1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Technique | Abuse Elevation Control Mechanismt1548 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.