CAPEC-476: Signature Spoofing by Misrepresentation
An attacker exploits a weakness in the parsing or display code of the recipient software to generate a data blob containing a supposedly valid signature, but the signer's identity is falsely represented, which can lead to the attacker manipulating the recipient software or its victim user to perform compromising actions.
Severity
High
Likelihood
Low
7
/ 100
low-risk
Active Threat
6/50 · Minimal
Exploit Availability
1/50 · Minimal