Vulnerabilities > CVE-2006-1700 - Unspecified vulnerability in Aweb Scripts Seller

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
aweb

Summary

Buy.php in Aweb Scripts Seller uses predictable cookies for authentication based on the time and the script number, which allows remote attackers to bypass authentication.

Vulnerable Configurations

Part Description Count
Application
Aweb
1