CAPEC-59: Session Credential Falsification through Prediction

This attack targets predictable session ID in order to gain privileges. The attacker can predict the session ID used during a transaction to perform spoofing and session hijacking.

Severity
High
Likelihood
High
12
/ 100
low-risk
Active Threat 10/50 · Low
Exploit Availability 2/50 · Minimal