Vulnerabilities
Vulnerable Software
Luca Deri:  >> Ntop  Security Vulnerabilities
The startup script in packages/RedHat/ntop.init in ntop before 3.2, when ntop.conf is writable by users besides root, creates temporary files insecurely, which allows remote attackers to execute arbitrary code.
CVSS Score
4.6
EPSS Score
0.004
Published
2005-11-01
Format string vulnerability in TraceEvent function for ntop before 2.1 allows remote attackers to execute arbitrary code by causing format strings to be injected into calls to the syslog function, via (1) an HTTP GET request, (2) a user name in HTTP authentication, or (3) a password in HTTP authentication.
CVSS Score
7.5
EPSS Score
0.09
Published
2002-08-12
ntop running in web mode allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVSS Score
5.0
EPSS Score
0.053
Published
2000-10-20
Buffer overflows in ntop running in web mode allows remote attackers to execute arbitrary commands.
CVSS Score
10.0
EPSS Score
0.06
Published
2000-10-20


Contact Us

Shodan ® - All rights reserved