« Back to list

Ntop

Ntop Ndpi: vulnerabilities and CVEs

Ntop Ndpi has 12 published vulnerabilities, 2 of them in the last 12 months. 6 are rated critical and 0 are listed by CISA as actively exploited.

CVEs12
Last 12 months2
Critical6
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2026-88357High (7.5)0.60%—Sep 24, 2026
nDPI 5.1.0 contains a memory access issue in the DNS dissector and serializer deserialization code. Specially crafted network input can cause byte-buffer addresses at odd offsets to be cast to uint16_t or wider integer…
CVE-2026-86098High (8.3)0.59%—Sep 4, 2026
ntop nDPI versions before 6.0 contain a heap buffer overflow vulnerability in the ndpi_json_string_escape function that writes beyond caller-supplied buffer boundaries. Attackers can trigger the overflow by supplying…
CVE-2025-25066High (8.4)0.18%—Feb 3, 2025
nDPI through 4.12 has a potential stack-based buffer overflow in ndpi_address_cache_restore in lib/ndpi_cache.c.
CVE-2021-36082High (8.8)1.8%—Jul 1, 2021
ntop nDPI 3.4 has a stack-based buffer overflow in processClientServerHello.
CVE-2020-15476High (7.5)2.1%—Jul 1, 2020
In nDPI through 3.2, the Oracle protocol dissector has a heap-based buffer over-read in ndpi_search_oracle in lib/protocols/oracle.c.
CVE-2020-15475Critical (9.8)1.2%—Jul 1, 2020
In nDPI through 3.2, ndpi_reset_packet_line_info in lib/ndpi_main.c omits certain reinitialization, leading to a use-after-free.
CVE-2020-15474Critical (9.8)1.2%—Jul 1, 2020
In nDPI through 3.2, there is a stack overflow in extractRDNSequence in lib/protocols/tls.c.
CVE-2020-15473Critical (9.1)1.3%—Jul 1, 2020
In nDPI through 3.2, the OpenVPN dissector is vulnerable to a heap-based buffer over-read in ndpi_search_openvpn in lib/protocols/openvpn.c.
CVE-2020-15472Critical (9.1)1.5%—Jul 1, 2020
In nDPI through 3.2, the H.323 dissector is vulnerable to a heap-based buffer over-read in ndpi_search_h323 in lib/protocols/h323.c, as demonstrated by a payload packet length that is too short.
CVE-2020-15471Critical (9.1)1.3%—Jul 1, 2020
In nDPI through 3.2, the packet parsing code is vulnerable to a heap-based buffer over-read in ndpi_parse_packet_line_info in lib/ndpi_main.c.
CVE-2020-11940High (7.5)1.3%—Apr 23, 2020
In nDPI through 3.2 Stable, an out-of-bounds read in concat_hash_string in ssh.c can be exploited by a network-positioned attacker that can send malformed SSH protocol messages on a network segment monitored by nDPI's…
CVE-2020-11939Critical (9.8)3.3%—Apr 23, 2020
In nDPI through 3.2 Stable, the SSH protocol dissector has multiple KEXINIT integer overflows that result in a controlled remote heap overflow in concat_hash_string in ssh.c. Due to the granular nature of the overflow…

🎯 How it gets exploited (ATT&CK techniques)

  1. T1190 Exploit Public-Facing Application2
  2. T1059 Command and Scripting Interpreter1
  3. T1499.004 Application or System Exploitation1

Number of CVEs of this technology mapped to each exploitation or primary-impact technique.

Other products by Ntop