CWE-290 - CERT CVE

CWE-290 - Authentication Bypass by Spoofing

This attack-focused weakness is caused by improperly implemented authentication schemes that are subject to spoofing attacks.

CAPEC ID Naziv
CAPEC-21 Exploitation of Trusted Identifiers
CAPEC-22 Exploiting Trust in Client
CAPEC-459 Creating a Rogue Certification Authority Certificate
CAPEC-461 Web Services API Signature Forgery Leveraging Hash Function Extension Weakness
CAPEC-473 Signature Spoof
CAPEC-476 Signature Spoofing by Misrepresentation
CAPEC-59 Session Credential Falsification through Prediction
CAPEC-60 Reusing Session IDs (aka Session Replay)
CAPEC-94 Man in the Middle Attack