Threat DS.Auth.CDBSC-DSF.4
URI: DS.Auth.CDBSC-DSF.4
Package: ProcessComms
Description: Malicious query from Client via database Service alters data Data : an attacker having the ability to send arbitrary queries to Service from or via Client injects a query to alter data Data. In this scenario, an update query on Data would not be expected to come via Client, so the attack can be prevented using database access controls at Service.
Threat Type: Primary Threat