Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Ntop

First CVE: Aug 21, 2009Active for: 17 yearsTotal CVEs: 21
52.3
VTI Score
TOP TARGET

Ntop maintains a focused portfolio of network traffic analysis and monitoring tools, including ndpi, ntopng, and ntop, that are deployed for deep packet inspection and visibility across enterprise and service-provider networks. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and frequently acquire public exploit code, reflecting the internet-facing and privileged role these products occupy in network infrastructure. The exposure recurs through memory-safety issues—out-of-bounds reads and writes—alongside web-layer weaknesses including cross-site scripting, cross-site request forgery, and injection flaws that are characteristic of complex analysis engines with web-management interfaces. Defenders should treat this vendor's critical advisories as high-priority, particularly for internet-exposed instances or those processing untrusted network data, and monitor patch release cycles closely for the core monitoring products. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
21
Total CVEs
More Total CVEs than 96% of tracked vendors
0.8
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 11% of tracked vendors
7.7
Avg CVSS Score
Higher Avg CVSS Score than 73% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Ntop over time

Volume of CVEsAvg CVSS Base Score
First CVE
Aug 21, 2009
16 years ago
Most Recent CVE
Jul 2, 2026
22 days ago

Products(3 total)

Top CVEs

Signals from CVEs in this vendor scope (21 CVEs).

21 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2018-12520HIGH
An issue was discovered in ntopng 3.4 before 3.4.180617. The PRNG involved in the generation of session IDs is not seeded at program startup. This results in deterministic session
Jul 5, 20188.141NOYES
CVE-2017-5473HIGH
Cross-site request forgery (CSRF) vulnerability in ntopng through 2.4 allows remote attackers to hijack the authentication of arbitrary users, as demonstrated by admin/add_user.lua
Jan 14, 20178.840NOYES
CVE-2026-38968CRITICAL
ntopng through 6.6 is vulnerable to Predictable Session Identifier which can lead to Session Hijacking. HTTP session identifiers in src/HTTPserver.cpp use weak time-seeded pseudo-r
Jul 2, 20269.838NONO
CVE-2014-5464MEDIUM
Cross-site scripting (XSS) vulnerability in the nDPI traffic classification library in ntopng (aka ntop) before 1.2.1 allows remote attackers to inject arbitrary web script or HTML
Sep 8, 20144.329NOYES
CVE-2025-25066HIGH
nDPI through 4.12 has a potential stack-based buffer overflow in ndpi_address_cache_restore in lib/ndpi_cache.c.
Feb 3, 20258.426NONO
CVE-2021-36082HIGH
ntop nDPI 3.4 has a stack-based buffer overflow in processClientServerHello.
Jul 1, 20218.826NONO
CVE-2015-8368MEDIUM
ntopng (aka ntop) before 2.2 allows remote authenticated users to change the login context and gain privileges via the user cookie and username parameter to admin/password_reset.lu
Dec 17, 20156.026NOYES
CVE-2009-2732MEDIUM
The checkHTTPpassword function in http.c in ntop 3.3.10 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an Authoriz
Aug 21, 20095.026NOYES
CVE-2020-11939CRITICAL
In nDPI through 3.2 Stable, the SSH protocol dissector has multiple KEXINIT integer overflows that result in a controlled remote heap overflow in concat_hash_string in ssh.c. Due t
Apr 23, 20209.825NONO
CVE-2017-7458HIGH
The NetworkInterface::getHost function in NetworkInterface.cpp in ntopng before 3.0 allows remote attackers to cause a denial of service (NULL pointer dereference and application c
Jun 26, 20177.525NONO
View all 21 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products21 CVEs
29%
38%
33%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local1 (4.8%)
Network15 (71.4%)
Unknown5 (23.8%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low15 (71.4%)
High1 (4.8%)
Unknown5 (23.8%)
User Interaction
None13 (61.9%)
Unknown5 (23.8%)
Required3 (14.3%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None16 (76.2%)
Unknown5 (23.8%)

Exploit Exposure

Signals from CVEs in this vendor scope (21 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
5 CVEs
23.8% of CVEs· 78th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Ntop.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Ntop — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Ntop's Products

View all 1 CNAs →

Top CWEs