Vulnerabilities (CVE)

Filtered by vendor Ntop Subscribe
Filtered by product Ndpi
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-36082 1 Ntop 1 Ndpi 2021-07-08 6.8 MEDIUM 8.8 HIGH
ntop nDPI 3.4 has a stack-based buffer overflow in processClientServerHello.
CVE-2020-15476 2 Linux, Ntop 2 Linux Kernel, Ndpi 2020-08-30 5.0 MEDIUM 7.5 HIGH
In nDPI through 3.2, the Oracle protocol dissector has a heap-based buffer over-read in ndpi_search_oracle in lib/protocols/oracle.c.
CVE-2020-11940 1 Ntop 1 Ndpi 2020-05-06 5.0 MEDIUM 7.5 HIGH
In nDPI through 3.2 Stable, an out-of-bounds read in concat_hash_string in ssh.c can be exploited by a network-positioned attacker that can send malformed SSH protocol messages on a network segment monitored by nDPI's library.