CVE-2002-0606

3Cdaemon 2.0 - Buffer Overflow via Long FTP Commands

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2002-0606. PoCs published by MaD SKiLL.

AI-analyzed exploit summary This exploit targets a stack-based buffer overflow in 3CDaemon 2.0 revision 10 FTP server by sending a large payload (420 bytes) to crash the service. It verifies the DoS by attempting a reconnection after the attack.

Description

Buffer overflow in 3Cdaemon 2.0 FTP server allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long commands such as login.

Exploits (1)

exploitdb WORKING POC VERIFIED
by MaD SKiLL · cdoswindows
https://www.exploit-db.com/exploits/21429

This exploit targets a stack-based buffer overflow in 3CDaemon 2.0 revision 10 FTP server by sending a large payload (420 bytes) to crash the service. It verifies the DoS by attempting a reconnection after the attack.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: 3CDaemon 2.0 revision 10
No auth needed
Prerequisites: Network access to the target FTP server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Vendor Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2002-04/0428.html
Exploit, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/4638
Vendor Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/8970.php

Scores

EPSS 0.1061
EPSS Percentile 95.2%

Details

Status published
Products (1)
3com/3cdaemon 2.0 revision_10
Published Jun 18, 2002
Tracked Since Feb 18, 2026