Detailedlikelihood: Highseverity: HighDraft
CAPEC-31Accessing/Intercepting/Modifying HTTP Cookies
Abstraction
Detailed
Status
Draft
Likelihood
High
Severity
High
Description
This attack relies on the use of HTTP Cookies to store credentials, state information and other critical data on client systems. There are several different forms of this attack. The first form of this attack involves accessing HTTP Cookies to mine for potentially sensitive data contained therein. The second form involves intercepting this data as it is transmitted from client to server. This intercepted information is then used by the adversary to impersonate the remote user/session. The third form is when the cookie's content is modified by the adversary before it is sent back to the server. Here the adversary seeks to convince the target server to operate on this falsified information.
Related weaknesses· 11
MITRE ATT&CK crosswalk· 1
Related attack patterns· 2
Exploits11
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Client-Side Enforcement of Server-Side Securitycwe-602 | 100% | live |
| Weakness | External Control of Assumed-Immutable Web Parametercwe-472 | 100% | live |
| Weakness | External Control of Critical State Datacwe-642 | 100% | live |
| Weakness | Use of Persistent Cookies Containing Sensitive Informationcwe-539 | 100% | live |
| Weakness | Cleartext Storage of Sensitive Information in a Cookiecwe-315 | 100% | live |
| Weakness | Missing Encryption of Sensitive Datacwe-311 | 100% | live |
| Weakness | Improper Input Validationcwe-20 | 100% | live |
| Weakness | Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Request/Response Splitting')cwe-113 | 100% | live |
| Weakness | Reliance on Cookies without Validation and Integrity Checkingcwe-565 | 100% | live |
| Weakness | Authentication Bypass by Assumed-Immutable Datacwe-302 | 100% | live |
| Weakness | Session Fixationcwe-384 | 100% | live |
Related to1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Technique | Steal Web Session Cookiet1539 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.