CAPEC 14 Client-side Injection-induced Buffer Overflow

Draft Detailed Medium Risk
Severity High

Description

This type of attack exploits a buffer overflow vulnerability in targeted client software through injection of malicious content from a custom-built hostile service. This hostile service is created to deliver the correct content to the client software. For example, if the client-side application is a browser, the service will host a webpage that the browser loads.

Attack Execution Flow

4

Mitigations

8

Consequences

Indicators

1

Relationships