Detailedlikelihood: Lowseverity: HighUsable
CAPEC-478Modification of Windows Service Configuration
Abstraction
Detailed
Status
Usable
Likelihood
Low
Severity
High
Description
An adversary exploits a weakness in access control to modify the execution parameters of a Windows service. The goal of this attack is to execute a malicious binary in place of an existing service.
Metadata: detailed CAPEC pattern, status usable, likelihood low, severity high. Underlying weakness: CWE-284. Mapped ATT&CK techniques: [object Object], [object Object]. Related CAPEC pattern: [object Object].
Related weaknesses· 1
MITRE ATT&CK crosswalk· 2
Related attack patterns· 1
Exploits1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Improper Access Controlcwe-284 | 100% | live |
Related to2
| Type | Target | Confidence | Tier |
|---|---|---|---|
| SubTechnique | Services Registry Permissions Weaknesst1574.011 | 100% | live |
| SubTechnique | Windows Servicet1543.003 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.