Standardlikelihood: Highseverity: HighStable
CAPEC-19Embedding Scripts within Scripts
Abstraction
Standard
Status
Stable
Likelihood
High
Severity
High
Description
An adversary leverages the capability to execute their own script by embedding it within other scripts that the target software is likely to execute due to programs' vulnerabilities that are brought on by allowing remote hosts to execute scripts.
Metadata: standard CAPEC pattern, status stable, likelihood high, severity high. Underlying weakness: CWE-284. Mapped ATT&CK techniques: [object Object], [object Object], [object Object]. Related CAPEC pattern: [object Object].
Related weaknesses· 1
MITRE ATT&CK crosswalk· 3
Related attack patterns· 1
Exploits1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Improper Access Controlcwe-284 | 100% | live |
Related to3
| Type | Target | Confidence | Tier |
|---|---|---|---|
| SubTechnique | Unix Shell Configuration Modificationt1546.004 | 100% | live |
| SubTechnique | Embedded Payloadst1027.009 | 100% | live |
| SubTechnique | Installer Packagest1546.016 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.