BaseDraft
CWE-1311Improper Translation of Security Attributes by Fabric Bridge
Category: other
Description
The bridge incorrectly translates security attributes from either trusted to untrusted or from untrusted to trusted when converting from one fabric protocol to another.
Common consequences· 1
- Confidentiality / Integrity / Access Control — Modify Memory, Read Memory, Gain Privileges or Assume Identity, Bypass Protection Mechanism, Execute Unauthorized Code or Commands
Potential mitigations· 2
- [Architecture and Design]The translation must map signals in such a way that untrusted agents cannot map to trusted agents or vice-versa.
- [Implementation]Ensure that the translation maps signals in such a way that untrusted agents cannot map to trusted agents or vice-versa.
Related CAPEC attack patterns· 3
References
Exploits (incoming)3
| Type | Target | Confidence | Tier |
|---|---|---|---|
| AttackPattern | Accessing Functionality Not Properly Constrained by ACLscapec-1 | 100% | live |
| AttackPattern | Privilege Escalationcapec-233 | 100% | live |
| AttackPattern | Exploiting Incorrectly Configured Access Control Security Levelscapec-180 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.