Record summary

CVE-2002-0209 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.

Description

Nortel Alteon ACEdirector WebOS 9.0, with the Server Load Balancing (SLB) and Cookie-Based Persistence features enabled, allows remote attackers to determine the real IP address of a web server with a half-closed session, which causes ACEdirector to send packets from the server without changing the address to the virtual IP address.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBAlteon AceDirector - Half-Closed HTTP Request IP Address RevealingExploitDB exploitby Dave PlonkaNot analyzed1 file
ExploitDB

PoC details

References

5