Unrated severityNVD Advisory· Published Dec 20, 2001· Updated Apr 16, 2026
CVE-2001-0876
CVE-2001-0876
Description
Buffer overflow in Universal Plug and Play (UPnP) on Windows 98, 98SE, ME, and XP allows remote attackers to execute arbitrary code via a NOTIFY directive with a long Location URL.
Affected products
4- cpe:2.3:o:microsoft:windows_98:*:gold:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_98se:*:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_me:*:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_xp:*:gold:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.cert.org/advisories/CA-2001-37.htmlnvdPatchThird Party AdvisoryUS Government Resource
- www.securityfocus.com/bid/3723nvdPatchVendor Advisory
- www.kb.cert.org/vuls/id/951555nvdUS Government Resource
- marc.infonvd
- marc.infonvd
- www.ciac.org/ciac/bulletins/m-030.shtmlnvd
- docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-059nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/7721nvd
News mentions
0No linked articles in our index yet.