Vulnerabilities > Nokia > Medium

DATE CVE VULNERABILITY TITLE RISK
2003-10-06 CVE-2003-0801 Cross-Site Scripting vulnerability in Nokia Electronic Documentation 5.0
Cross-site scripting (XSS) vulnerability in Nokia Electronic Documentation (NED) 5.0 allows remote attackers to execute arbitrary web script and steal cookies via a URL to the docs/ directory that contains the script.
network
nokia CWE-79
4.3
2003-03-18 CVE-2003-0137 Remote Security vulnerability in DX200 (SGSN)
SNMP daemon in the DX200 based network element for Nokia Serving GPRS support node (SGSN) allows remote attackers to read SNMP options via arbitrary community strings.
network
low complexity
nokia
5.0
2003-03-07 CVE-2003-0103 Denial of Service vulnerability in Nokia 6210 Handset 5.27
Format string vulnerability in Nokia 6210 handset allows remote attackers to cause a denial of service (crash, lockup, or restart) via a Multi-Part vCard with fields containing a large number of format string specifiers.
network
low complexity
nokia
5.0
2001-10-08 CVE-2001-1431 Information Disclosure vulnerability in VPN-1
Nokia Firewall Appliances running IPSO 3.3 and VPN-1/FireWall-1 4.1 Service Pack 3, IPSO 3.4 and VPN-1/FireWall-1 4.1 Service Pack 4, and IPSO 3.4 or IPSO 3.4.1 and VPN-1/FireWall-1 4.1 Service Pack 5, when SYN Defender is configured in Active Gateway mode, does not properly rewrite the third packet of a TCP three-way handshake to use the NAT IP address, which allows remote attackers to gain sensitive information.
network
low complexity
checkpoint nokia
5.0