CAPEC Definitions

    CAPEC Definitions / CAPEC-635

    CAPEC-635: Alternative Execution Due to Deceptive Filenames

    The extension of a file name is often used in various contexts to determine the application that is used to open and use it. If an attacker can cause an alternative application to be used, it may be able to execute malicious code, cause a denial of service or expose sensitive information.

    Severity:High
    Possibility:

    Extended Description

    No Extended Description.

    Mitigations

    Applications should insure that the content of the file is consistent with format it is expecting, and not depend solely on the file extension.

    Relationships with other CAPECs

    CAPEC-165: File Manipulation

    Prerequisites

    The use of the file must be controlled by the file extension.

    Related Weaknesses

    CWE-162: Improper Neutralization of Trailing Special Elements