{"api_version":"1","generated_at":"2026-07-23T08:09:07+00:00","cve":"CVE-2001-0826","urls":{"html":"https://cve.report/CVE-2001-0826","api":"https://cve.report/api/cve/CVE-2001-0826.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2001-0826","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2001-0826"},"summary":{"title":"CVE-2001-0826","description":"Buffer overflows in CesarFTPD 0.98b allows remote attackers to execute arbitrary commands via long arguments to (1) HELP, (2) USER, (3) PASS, (4) PORT, (5) DELE, (6) REST, (7) RMD, or (8) MKD.","state":"PUBLISHED","assigner":"mitre","published_at":"2001-12-06 05:00:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.5","severity":"","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00070.html","name":"http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00070.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"RUS-CERT - Home","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/20010630093621.66913.qmail%40web13002.mail.yahoo.com","name":"http://www.securityfocus.com/archive/1/20010630093621.66913.qmail%40web13002.mail.yahoo.com","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/2972","name":"http://www.securityfocus.com/bid/2972","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"CaesarFTPD FTP Command Buffer Overflow Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.securityfocus.com/archive/1/20010630093621.66913.qmail@web13002.mail.yahoo.com","name":"BUGTRAQ:20010630 cesarFTP v0.98b 'HELP' buffer overflow","refsource":"MITRE","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2001-0826","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2001-0826","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2001","cve_id":"826","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"aclogic","cpe5":"cesarftp","cpe6":"0.98b","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-08T04:37:07.125Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"20010704 CesarFTPd, Cerberus FTPd","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00070.html"},{"name":"2972","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/2972"},{"name":"20010630 cesarFTP v0.98b 'HELP' buffer overflow","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/20010630093621.66913.qmail%40web13002.mail.yahoo.com"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2001-06-30T00:00:00.000Z","descriptions":[{"lang":"en","value":"Buffer overflows in CesarFTPD 0.98b allows remote attackers to execute arbitrary commands via long arguments to (1) HELP, (2) USER, (3) PASS, (4) PORT, (5) DELE, (6) REST, (7) RMD, or (8) MKD."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2001-11-28T10:00:00.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"20010704 CesarFTPd, Cerberus FTPd","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00070.html"},{"name":"2972","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/2972"},{"name":"20010630 cesarFTP v0.98b 'HELP' buffer overflow","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/20010630093621.66913.qmail%40web13002.mail.yahoo.com"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2001-0826","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Buffer overflows in CesarFTPD 0.98b allows remote attackers to execute arbitrary commands via long arguments to (1) HELP, (2) USER, (3) PASS, (4) PORT, (5) DELE, (6) REST, (7) RMD, or (8) MKD."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"20010704 CesarFTPd, Cerberus FTPd","refsource":"BUGTRAQ","url":"http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00070.html"},{"name":"2972","refsource":"BID","url":"http://www.securityfocus.com/bid/2972"},{"name":"20010630 cesarFTP v0.98b 'HELP' buffer overflow","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/20010630093621.66913.qmail@web13002.mail.yahoo.com"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2001-0826","datePublished":"2001-11-22T05:00:00.000Z","dateReserved":"2001-11-22T00:00:00.000Z","dateUpdated":"2024-08-08T04:37:07.125Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2001-12-06 05:00:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:aclogic:cesarftp:0.98b:*:*:*:*:*:*:*","matchCriteriaId":"C9E01331-AB2C-4A40-BB5F-E7409079C6A8"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2001","CveId":"826","Ordinal":"1","Title":"CVE-2001-0826","CVE":"CVE-2001-0826","Year":"2001"},"notes":[{"CveYear":"2001","CveId":"826","Ordinal":"1","NoteData":"Buffer overflows in CesarFTPD 0.98b allows remote attackers to execute arbitrary commands via long arguments to (1) HELP, (2) USER, (3) PASS, (4) PORT, (5) DELE, (6) REST, (7) RMD, or (8) MKD.","Type":"Description","Title":"CVE-2001-0826"},{"CveYear":"2001","CveId":"826","Ordinal":"2","NoteData":"2001-11-22","Type":"Other","Title":"Published"},{"CveYear":"2001","CveId":"826","Ordinal":"3","NoteData":"2001-11-28","Type":"Other","Title":"Modified"}]}}}