Compliance Node Overview
MITRE CAPEC-470 (Expanding Control over the Operating System from the Database) is a detailed-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An attacker is able to leverage access gained to the database to read / write data to the file system, compromise the operating system, create a tunnel for accessing the host machine, and use this access to potentially attack other machines on the same network as the database machine. Likelihood of attack: Unknown. Typical severity: Very High. Maps to weaknesses CWE-250, CWE-89.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/470.html
SHA-256 integrity: a88302844cdd915eb19ac082f88f957a140516a84107cea8ba774636e8e4a6b9
Primary Citations — 8 traced to source
- MITRE CAPEC-470: Expanding Control over the Operating System from the Database (https://capec.mitre.org/data/definitions/470.html)
- CWE-250: underlying weakness (http://cwe.mitre.org/data/definitions/250.html)
+ 6 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.