Ntop / Ndpi
10 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-86098 | ntop nDPI before 6.0 Heap Buffer Overflow via ndpi_json_string_escape | HIGH | 8.3 | Sep 4, 2026 |
| CVE-2025-25066 | nDPI through 4.12 has a potential stack-based buffer overflow in ndpi_address_cache_restore in lib/ndpi_cache.c. | HIGH | 8.4 | Feb 3, 2025 |
| CVE-2021-36082 | ntop nDPI 3.4 has a stack-based buffer overflow in processClientServerHello. | HIGH | 8.8 | Jul 1, 2021 |
| CVE-2020-15471 | In nDPI through 3.2, the packet parsing code is vulnerable to a heap-based buffer over-read in ndpi_parse_packet_line_info in lib/ndpi_main.c. | CRITICAL | 9.1 | Jul 1, 2020 |
| CVE-2020-15472 | In nDPI through 3.2, the H.323 dissector is vulnerable to a heap-based buffer over-read in ndpi_search_h323 in lib/protocols/h323.c, as demonstrated by a paylo… | CRITICAL | 9.1 | Jul 1, 2020 |
| CVE-2020-15473 | In nDPI through 3.2, the OpenVPN dissector is vulnerable to a heap-based buffer over-read in ndpi_search_openvpn in lib/protocols/openvpn.c. | CRITICAL | 9.1 | Jul 1, 2020 |
| CVE-2020-15474 | In nDPI through 3.2, there is a stack overflow in extractRDNSequence in lib/protocols/tls.c. | CRITICAL | 9.8 | Jul 1, 2020 |
| CVE-2020-15475 | In nDPI through 3.2, ndpi_reset_packet_line_info in lib/ndpi_main.c omits certain reinitialization, leading to a use-after-free. | CRITICAL | 9.8 | Jul 1, 2020 |
| CVE-2020-15476 | In nDPI through 3.2, the Oracle protocol dissector has a heap-based buffer over-read in ndpi_search_oracle in lib/protocols/oracle.c. | HIGH | 7.5 | Jul 1, 2020 |
| CVE-2020-11940 | In nDPI through 3.2 Stable, an out-of-bounds read in concat_hash_string in ssh.c can be exploited by a network-positioned attacker that can send malformed SSH… | HIGH | 7.5 | Apr 23, 2020 |
| CVE-2020-11939 | In nDPI through 3.2 Stable, the SSH protocol dissector has multiple KEXINIT integer overflows that result in a controlled remote heap overflow in concat_hash_s… | CRITICAL | 9.8 | Apr 23, 2020 |
Showing 1 to 10 of 10 CVEs