CAPEC攻击模式浏览
Common Attack Pattern Enumeration and Classification(通用攻击模式枚举与分类)- 常见攻击模式的综合字典和分类
总攻击模式数
615
分类数
78
视图数
13
CAPEC攻击模式列表 共 615 条
| CAPEC ID | 名称 | 抽象级别 | 严重程度 | 状态 | 操作 |
|---|---|---|---|---|---|
| CAPEC-101 | Server Side Include (SSI) Injection | Detailed | High | Draft | 查看详情 |
| CAPEC-102 | Session Sidejacking | Detailed | High | Draft | 查看详情 |
| CAPEC-103 | Clickjacking | Standard | High | Draft | 查看详情 |
| CAPEC-104 | Cross Zone Scripting | Standard | High | Draft | 查看详情 |
| CAPEC-105 | HTTP Request Splitting | Detailed | High | Stable | 查看详情 |
| CAPEC-106 | DEPRECATED: XSS through Log Files | Detailed | - | Deprecated | 查看详情 |
| CAPEC-107 | Cross Site Tracing | Detailed | Very High | Draft | 查看详情 |
| CAPEC-108 | Command Line Execution through SQL Injection | Detailed | Very High | Draft | 查看详情 |
| CAPEC-109 | Object Relational Mapping Injection | Detailed | High | Draft | 查看详情 |
| CAPEC-110 | SQL Injection through SOAP Parameter Tampering | Detailed | Very High | Draft | 查看详情 |
| CAPEC-111 | JSON Hijacking (aka JavaScript Hijacking) | Standard | High | Draft | 查看详情 |
| CAPEC-112 | Brute Force | Meta | High | Draft | 查看详情 |
| CAPEC-113 | Interface Manipulation | Meta | Medium | Draft | 查看详情 |
| CAPEC-114 | Authentication Abuse | Meta | Medium | Draft | 查看详情 |
| CAPEC-115 | Authentication Bypass | Meta | Medium | Draft | 查看详情 |
| CAPEC-116 | Excavation | Meta | Medium | Stable | 查看详情 |
| CAPEC-117 | Interception | Meta | Medium | Stable | 查看详情 |
| CAPEC-120 | Double Encoding | Detailed | Medium | Draft | 查看详情 |
| CAPEC-121 | Exploit Non-Production Interfaces | Standard | High | Stable | 查看详情 |
| CAPEC-122 | Privilege Abuse | Meta | Medium | Draft | 查看详情 |