Detailedlikelihood: Mediumseverity: HighStable

CAPEC-33HTTP Request Smuggling

Abstraction
Detailed
Status
Stable
Likelihood
Medium
Severity
High

Description

Metadata: detailed CAPEC pattern, status stable, likelihood medium, severity high. Underlying weakness: CWE-444. Related CAPEC patterns: [object Object], [object Object], [object Object], [object Object] (and 4 more). Metadata: detailed CAPEC pattern, status stable, likelihood medium, severity high. Underlying weakness: CWE-444. Related CAPEC patterns: [object Object], [object Object], [object Object], [object Object] (and 4 more).

Related weaknesses· 1

CWE-444

Related attack patterns· 8

CAPEC-220 (ChildOf)CAPEC-273 (PeerOf)CAPEC-115 (CanPrecede)CAPEC-141 (CanPrecede)CAPEC-63 (CanPrecede)CAPEC-593 (CanPrecede)CAPEC-148 (CanPrecede)CAPEC-154 (CanPrecede)

Exploits1

TypeTargetConfidenceTier
WeaknessInconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')cwe-444100%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CAPEC
HTTP Response Smuggling
CAPEC
Server Side Request Forgery
CAPEC
HTTP Response Splitting
CAPEC
HTTP Request Splitting
CAPEC
XSS Through HTTP Query Strings
CAPEC
URL Encoding
Sourced from MITRE CAPEC. Curated by Adam Lundqvist, SQUR.