DB01 Priviledge Escalation
Context | Remote user interacts with a virtual machine |
Problem | System services and applications suffer from privilege escalation |
Solution | |
References | R.28: Privilege escalation [ENISA]; |
Type | ns:type_ThreatPattern |
Victim | su:comp_VirtualMachine |
Aggressor | su:comp_RemoteUser |
Aggr. role | ns:role_Client |
STRIDE | ns:STRIDE_Elevation_of_Privilege |
Threat | ns:threat_txSpoofingPrivilegedProcesses; ns:threat_txInvokingUnauthorizedOperations; ns:threat_txUnauthorizedAccess; ns:threat_txLeveragingAuthorizationModel |