{
  "node_id": "mitre-capec-capec-220-client-server-protocol-manipulation",
  "title": "MITRE CAPEC-220: Client-Server Protocol Manipulation (Standard Attack Pattern - Medium Severity)",
  "domain": "Cybersecurity",
  "version": "1.0.0",
  "last_updated": "2026-05-25",
  "bluf": "MITRE CAPEC-220 (Client-Server Protocol Manipulation) is a standard-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary takes advantage of weaknesses in the protocol by which a client and server are communicating to perform unexpected actions. Communication protocols are necessary to transfer messages between client and server applications. Moreover, different protocols may be used for different types of interactions. Likelihood of attack: Unknown. Typical severity: Medium. Parent pattern for CAPEC-105 HTTP Request Splitting; CAPEC-273 HTTP Response Smuggling; CAPEC-274 HTTP Verb Tampering; and others. Maps to weaknesses CWE-757.",
  "paywall": {
    "status": "LOCKED",
    "unlock_cost_usd": "0.01",
    "skyfire_id": "41779894-ece2-4163-9761-b3b1b76e19b0"
  },
  "crosswalks": {
    "_available_keys": [
      "nist_framework",
      "iso_standard",
      "industry_mapping",
      "mitre_attack"
    ],
    "_note": "Full crosswalk values included in vault response"
  },
  "dependencies": [
    "nist-sp-800-53-r5",
    "iso-27001-2022",
    "cis-controls-v8",
    "owasp-asvs-l2"
  ],
  "primary_citations_count": 7
}