Description
Cross-site scripting (XSS) vulnerability in Nokia Electronic Documentation (NED) 5.0 allows remote attackers to execute arbitrary web script and steal cookies via a URL to the docs/ directory that contains the script.
Exploits (1)
exploitdb
WRITEUP
VERIFIED
by Ollie Whitehouse · textremotewindows
https://www.exploit-db.com/exploits/23149
References (1)
Core 1
Core References
Exploit, Vendor Advisory vendor-advisory
x_refsource_atstake
http://www.atstake.com/research/advisories/2003/a091503-1.txt
Scores
EPSS
0.0031
EPSS Percentile
54.2%
Details
CWE
CWE-79
Status
published
Products (1)
nokia/electronic_documentation
5.0
Published
Oct 06, 2003
Tracked Since
Feb 18, 2026