CVE-2003-0803

Nokia Electronic Documentation <5.0 - Open Redirect

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2003-0803. PoCs published by @stake.

AI-analyzed exploit summary The vulnerability in Nokia Electronic Documentation (NED) allows an attacker to redirect connections to a third-party system due to insufficient host verification in HTTP requests. The provided example demonstrates how an attacker can exploit this by crafting a URL to redirect data to an arbitrary target.

Description

Nokia Electronic Documentation (NED) 5.0 allows remote attackers to use NED as an open HTTP proxy via a URL in the location parameter, which NED accesses and returns to the user.

Exploits (1)

exploitdb WRITEUP VERIFIED
by @stake · textremotewindows
https://www.exploit-db.com/exploits/23148

The vulnerability in Nokia Electronic Documentation (NED) allows an attacker to redirect connections to a third-party system due to insufficient host verification in HTTP requests. The provided example demonstrates how an attacker can exploit this by crafting a URL to redirect data to an arbitrary target.

Classification
Writeup 90%
Attack Type
Ssrf
Complexity
Trivial
Reliability
Theoretical
Target: Nokia Electronic Documentation (NED)
No auth needed
Prerequisites: Access to the NED server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
Exploit, Vendor Advisory vendor-advisory x_refsource_atstake
http://www.atstake.com/research/advisories/2003/a091503-1.txt

Scores

EPSS 0.0561
EPSS Percentile 92.2%

Details

Status published
Products (1)
nokia/electronic_documentation 5.0
Published Oct 06, 2003
Tracked Since Feb 18, 2026