Compliance Node Overview
MITRE CAPEC-75 (Manipulating Writeable Configuration Files) is a standard-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. Generally these are manually edited files that are not in the preview of the system administrators, any ability on the attackers' behalf to modify these files, for example in a CVS repository, gives unauthorized access directly to the application, the same as authorized users. Likelihood of attack: High. Typical severity: Very High. Maps to weaknesses CWE-349, CWE-99, CWE-77, CWE-346, and others.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/75.html
SHA-256 integrity: bbaa5fe23332219a9a025e2b21c7c950309b0c4fe6a6f2df85c424ab85add0cc
Primary Citations — 10 traced to source
- MITRE CAPEC-75: Manipulating Writeable Configuration Files (https://capec.mitre.org/data/definitions/75.html)
- CWE-349: underlying weakness (http://cwe.mitre.org/data/definitions/349.html)
+ 8 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.