Signature Spoofing by Misrepresentation
CAPEC-476 · Detailed · Draft
An attacker exploits a weakness in the parsing or display code of the recipient software to generate a data blob containing a supposedly valid signature, but the signer's identity is falsely represented, which can lead to the attacker manipulating the recipient software or its victim user to perform compromising actions.
likelihood: Low
severity: High