First create a NAT translation
static (inside,outside) tcp [public IP] 5000 [internal IP] 5000 netmask 255.255.255.255 0 0
static (inside,outside) tcp [public IP] 5001 [internal IP] 5001 netmask 255.255.255.255 0 0
Then create (if not already created) and ACL and apply to the outside interface-
access-list outside_access permit any host [public IP] eq 5000
access-list outside_access permit any host [public IP] eq 5001
access-group outside_access in interface outside
You should not use the any keyword if possible. Restrict down to the users public IP if possible.