Ettercap-project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 13
    Known Exploited: 0
    0
    Critical Level Threats
    8
    High Level Threats
    4
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-3606

    Ettercap etterfilter ef_output.c add_data_segment out-of-bounds

    Last Modified: Apr 16, 2026
    Published: Mar 05, 2026

    CVE-2010-3843

    The GTK version of ettercap uses a global settings file at /tmp/.ettercap_gtk and does not verify ownership of this file. When parsing this file for settings in gtkui_conf_read() (src/interfacesgtk/ec_gtk_conf.c), an unchecked sscanf() call allows a maliciously placed settings file to overflow a statically-sized buffer on the stack.

    Last Modified: Nov 21, 2024
    Published: May 28, 2021

    CVE-2010-3844

    An unchecked sscanf() call in ettercap before 0.7.5 allows an insecure temporary settings file to overflow a static-sized buffer on the stack.

    Last Modified: Nov 21, 2024
    Published: Nov 12, 2019

    CVE-2017-6430

    The compile_tree function in ef_compiler.c in the Etterfilter utility in Ettercap 0.8.2 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted filter.

    Last Modified: Apr 20, 2025
    Published: Mar 15, 2017

    CVE-2014-6396

    The dissector_postgresql function in dissectors/ec_postgresql.c in Ettercap before 0.8.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted password length, which triggers a 0 character to be written to an arbitrary memory location.

    Last Modified: Apr 12, 2025
    Published: Dec 19, 2014
    Items Per Page