Session Credential Falsification through Prediction
CAPEC-59 · Detailed · Draft
This attack targets predictable session ID in order to gain privileges. The attacker can predict the session ID used during a transaction to perform spoofing and session hijacking.
likelihood: High
severity: High