Vulnerability Description
Cerberus FTP 1.5 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long (1) username, (2) password, or (3) PASV command.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Grant Averett | Ceberus Ftp Server | 1.0 |
References
- http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00070.html
- http://www.securityfocus.com/archive/1/192655ExploitVendor Advisory
- http://www.securityfocus.com/bid/2901ExploitVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6728
- http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00070.html
- http://www.securityfocus.com/archive/1/192655ExploitVendor Advisory
- http://www.securityfocus.com/bid/2901ExploitVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6728
FAQ
What is CVE-2001-0702?
CVE-2001-0702 is a vulnerability with a CVSS score of 7.5 (HIGH). Cerberus FTP 1.5 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long (1) username, (2) password, or (3) PASV command.
How severe is CVE-2001-0702?
CVE-2001-0702 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2001-0702?
Check the references section above for vendor advisories and patch information. Affected products include: Grant Averett Ceberus Ftp Server.