CAPEC攻击模式浏览
Common Attack Pattern Enumeration and Classification(通用攻击模式枚举与分类)- 常见攻击模式的综合字典和分类
总攻击模式数
615
分类数
78
视图数
13
CAPEC攻击模式列表 共 615 条
| CAPEC ID | 名称 | 抽象级别 | 严重程度 | 状态 | 操作 |
|---|---|---|---|---|---|
| CAPEC-206 | Signing Malicious Code | Detailed | Very High | Draft | 查看详情 |
| CAPEC-207 | Removing Important Client Functionality | Standard | High | Draft | 查看详情 |
| CAPEC-208 | Removing/short-circuiting 'Purse' logic: removing/mutating 'cash' decrements | Detailed | Medium | Draft | 查看详情 |
| CAPEC-209 | XSS Using MIME Type Mismatch | Detailed | Medium | Draft | 查看详情 |
| CAPEC-211 | DEPRECATED: Leveraging web tools (e.g. Mozilla's GreaseMonkey, Firebug) to change application behavior | Detailed | - | Deprecated | 查看详情 |
| CAPEC-212 | Functionality Misuse | Meta | Medium | Stable | 查看详情 |
| CAPEC-213 | DEPRECATED: Directory Traversal | Standard | - | Deprecated | 查看详情 |
| CAPEC-214 | DEPRECATED: Fuzzing for garnering J2EE/.NET-based stack traces, for application mapping | Detailed | - | Deprecated | 查看详情 |
| CAPEC-215 | Fuzzing for application mapping | Detailed | Low | Draft | 查看详情 |
| CAPEC-216 | Communication Channel Manipulation | Meta | - | Stable | 查看详情 |
| CAPEC-217 | Exploiting Incorrectly Configured SSL/TLS | Standard | - | Draft | 查看详情 |
| CAPEC-218 | Spoofing of UDDI/ebXML Messages | Detailed | Medium | Draft | 查看详情 |
| CAPEC-219 | XML Routing Detour Attacks | Standard | Medium | Draft | 查看详情 |
| CAPEC-220 | Client-Server Protocol Manipulation | Standard | Medium | Draft | 查看详情 |
| CAPEC-221 | Data Serialization External Entities Blowup | Detailed | - | Draft | 查看详情 |
| CAPEC-222 | iFrame Overlay | Detailed | High | Draft | 查看详情 |
| CAPEC-224 | Fingerprinting | Meta | Very Low | Stable | 查看详情 |
| CAPEC-226 | Session Credential Falsification through Manipulation | Detailed | Medium | Draft | 查看详情 |
| CAPEC-227 | Sustained Client Engagement | Meta | - | Draft | 查看详情 |
| CAPEC-228 | DTD Injection | Detailed | Medium | Draft | 查看详情 |