Exploitation Summary
EIP tracks 1 public exploit for CVE-2003-0802. PoCs published by @stake.
AI-analyzed exploit summary The exploit describes a directory traversal vulnerability in Nokia Electronic Documentation (NED) hosted on WebLogic servers. By appending a dot (.) to a request, an attacker can list directory contents and disclose the directory path.
Description
Nokia Electronic Documentation (NED) 5.0 allows remote attackers to obtain a directory listing of the WebLogic web root, and the physical path of the NED server, via a "retrieve" action with a location parameter of . (dot).
Exploits (1)
The exploit describes a directory traversal vulnerability in Nokia Electronic Documentation (NED) hosted on WebLogic servers. By appending a dot (.) to a request, an attacker can list directory contents and disclose the directory path.