Luca Deri's vulnerability footprint centers on ntop, a network traffic monitoring and analysis tool deployed in monitoring and visibility contexts where it processes untrusted network data. The observed disclosures reflect application-layer exposure in network-facing software, with weakness classifications spanning general categories typical of tools handling complex protocol parsing and data ingestion. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Luca Deri over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2000-0706HIGH Buffer overflows in ntop running in web mode allows remote attackers to execute arbitrary commands. | Oct 20, 2000 | 10.0 | 37 | NO | YES |
CVE-2002-0412HIGH Format string vulnerability in TraceEvent function for ntop before 2.1 allows remote attackers to execute arbitrary code by causing format strings to be injected into calls to the | Aug 12, 2002 | 7.5 | 25 | NO | NO |
CVE-2000-0705MEDIUM ntop running in web mode allows remote attackers to read arbitrary files via a .. (dot dot) attack. | Oct 20, 2000 | 5.0 | 25 | NO | YES |
CVE-2005-3387MEDIUM The startup script in packages/RedHat/ntop.init in ntop before 3.2, when ntop.conf is writable by users besides root, creates temporary files insecurely, which allows remote attack | Nov 1, 2005 | 4.6 | 14 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Luca Deri.
Media articles that mention a CVE ID that affects a product developed by Luca Deri — matched by CVE ID, not by vendor name.