CVE-2020-15473: Ntop Ndpi
Critical severity, CVSS 9.1. EPSS: 1.3% chance of exploitation in the next 30 days.
In nDPI through 3.2, the OpenVPN dissector is vulnerable to a heap-based buffer over-read in ndpi_search_openvpn in lib/protocols/openvpn.c.
Affected products
- Ntop Ndpi: up to and including 3.2
Published 2020-07-01. Last modified 2026-06-17.