Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Snort

First CVE: Dec 31, 2000Active for: 26 yearsTotal CVEs: 19
48.1
VTI Score
High

Snort is a widely deployed open-source intrusion-detection and prevention engine whose vulnerability profile concentrates in a single product core that sits on the critical path of network monitoring and inline security operations. The vendor's disclosures cluster around resource-handling and control-flow weaknesses such as improper resource allocation, throttling failures, and incorrect execution paths that can disrupt detection capability or availability, and the vulnerabilities frequently acquire public exploit code. Defenders should monitor this vendor's releases closely given Snort's presence in SOC and perimeter defense architectures; live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
19
Total CVEs
More Total CVEs than 96% of tracked vendors
1.9
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 80% of tracked vendors
6.6
Avg CVSS Score
Higher Avg CVSS Score than 42% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Snort over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 31, 2000
25 years ago
Most Recent CVE
Nov 1, 2023
996 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (19 CVEs).

19 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2006-5276HIGH
Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire Intrusion Sensor; allows remote attackers to execute arbitrar
Feb 20, 200710.086NOYES
CVE-2009-3641MEDIUM
Snort before 2.8.5.1, when the -v option is enabled, allows remote attackers to cause a denial of service (application crash) via a crafted IPv6 packet that uses the (1) TCP or (2)
Oct 28, 20094.345NOYES
CVE-2003-0033HIGH
Buffer overflow in the RPC preprocessor for Snort 1.8 and 1.9.x before 1.9.1 allows remote attackers to execute arbitrary code via fragmented RPC packets.
Mar 7, 200310.033NONO
CVE-2016-1417HIGH
Untrusted search path vulnerability in Snort 2.9.7.0-WIN32 allows remote attackers to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse tcapi.dll that is
Jan 23, 20178.829NONO
CVE-2007-1398HIGH
The frag3 preprocessor in Snort 2.6.1.1, 2.6.1.2, and 2.7.0 beta, when configured for inline use on Linux without the ip_conntrack module loaded, allows remote attackers to cause a
Mar 10, 20077.129NOYES
CVE-2001-0669HIGH
Various Intrusion Detection Systems (IDS) including (1) Cisco Secure Intrusion Detection System, (2) Cisco Catalyst 6000 Intrusion Detection System Module, (3) Dragon Sensor 4.x, (
Oct 30, 20017.529NOYES
CVE-2021-40114HIGH
Multiple Cisco products are affected by a vulnerability in the way the Snort detection engine processes ICMP traffic that could allow an unauthenticated, remote attacker to cause a
Oct 27, 20217.526NONO
CVE-2021-1223HIGH
Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file policy for HT
Jan 13, 20217.525NONO
CVE-2007-0251HIGH
Integer underflow in the DecodeGRE function in src/decode.c in Snort 2.6.1.2 allows remote attackers to trigger dereferencing of certain memory locations via crafted GRE packets, w
Jan 16, 20077.822NONO
CVE-2023-20071MEDIUM
Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass the configured policies on an a
Nov 1, 20235.821NONO
View all 19 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products19 CVEs
58%
42%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network9 (47.4%)
Unknown10 (52.6%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low9 (47.4%)
High0 (0.0%)
Unknown10 (52.6%)
User Interaction
None8 (42.1%)
Unknown10 (52.6%)
Required1 (5.3%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None9 (47.4%)
Unknown10 (52.6%)

Exploit Exposure

Signals from CVEs in this vendor scope (19 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
5.3% of CVEs· 98th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
4 CVEs
21.1% of CVEs· 78th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Snort.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Snort — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Snort's Products

View all 3 CNAs →

Top CWEs