Bidda Sovereign Intelligence · 10,085 Verified Nodes · 39 Sovereign Pillars

MITRE CAPEC-105: HTTP Request Splitting (Detailed Attack Pattern - High Severity)

MITRE CAPEC-105 (HTTP Request Splitting) is a detailed-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An…

What MITRE CAPEC-105: HTTP Request Splitting (Detailed Attack Pattern - High Severity) requires

MITRE CAPEC-105 (HTTP Request Splitting) is a detailed-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary abuses the flexibility and discrepancies in the parsing and interpretation of HTTP Request messages by different intermediary HTTP agents (e.g., load balancer, reverse proxy, web caching proxies, application firewalls, etc.) to split a single HTTP request into multiple unauthorized and malicious HTTP requests to a back-end HTTP agent (e.g., web server). Likelihood of attack: Medium. Typical severity: High. Maps to weaknesses CWE-74, CWE-113, CWE-138, CWE-436.

Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:

Primary source: https://capec.mitre.org/data/definitions/105.html

SHA-256 integrity: ef14537b0a87c45c25dc3086d18a5e9caa5f44de841ad13d92be3d68ea611256

Primary Citations — 11 traced to source

  • MITRE CAPEC-105: HTTP Request Splitting (https://capec.mitre.org/data/definitions/105.html)
  • CWE-74: underlying weakness (http://cwe.mitre.org/data/definitions/74.html)

+ 9 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.

Access

⚠ Important: Human Verification Required

Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.