CAPEC 114 Authentication Abuse

Draft Meta Unknown Risk
Severity Medium

Description

An attacker obtains unauthorized access to an application, service or device either through knowledge of the inherent weaknesses of an authentication mechanism, or by exploiting a flaw in the authentication scheme's implementation. In such an attack an authentication mechanism is functioning but a carefully controlled sequence of events causes the mechanism to grant access to the attacker.

Consequences

Relationships

Related ATT&CK Techniques

1

Resources Required

1