Standardlikelihood: Highseverity: Very HighDraft
CAPEC-17Using Malicious Files
Abstraction
Standard
Status
Draft
Likelihood
High
Severity
Very High
Description
An attack of this type exploits a system's configuration that allows an adversary to either directly access an executable file, for example through shell access; or in a possible worst case allows an adversary to upload a file and then execute it. Web servers, ftp servers, and message oriented middleware systems which have many integration points are particularly vulnerable, because both the programmers and the administrators must be in synch regarding the interfaces and the correct privileges for each interface.
Related weaknesses· 7
MITRE ATT&CK crosswalk· 2
Related attack patterns· 2
Exploits7
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Improper Authorizationcwe-285 | 100% | live |
| Weakness | Incorrect Permission Assignment for Critical Resourcecwe-732 | 100% | live |
| Weakness | Improper Link Resolution Before File Access ('Link Following')cwe-59 | 100% | live |
| Weakness | Improper Ownership Managementcwe-282 | 100% | live |
| Weakness | Protection Mechanism Failurecwe-693 | 100% | live |
| Weakness | Privilege Context Switching Errorcwe-270 | 100% | live |
| Weakness | Least Privilege Violationcwe-272 | 100% | live |
Related to2
| Type | Target | Confidence | Tier |
|---|---|---|---|
| SubTechnique | Executable Installer File Permissions Weaknesst1574.005 | 100% | live |
| SubTechnique | Services File Permissions Weaknesst1574.010 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.