CAPEC 273 HTTP Response Smuggling

Stable Detailed Medium Risk
Severity High

Description

{'xhtml:p': ['An adversary manipulates and injects malicious content in the form of secret unauthorized HTTP responses, into a single HTTP response from a vulnerable or compromised back-end HTTP agent (e.g., server).', 'See CanPrecede relationships for possible consequences.']}

Attack Execution Flow

4

Mitigations

13

Consequences

Indicators

1

Relationships

Resources Required

1