Ettercap-Project Ettercap vulnerabilities
16 known vulnerabilities affecting ettercap-project/ettercap.
Total CVEs
16
CISA KEV
0
Public exploits
6
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH9MEDIUM6
Vulnerabilities
Page 1 of 1
CVE-2014-6395P3HIGHCVSS 7.5PoC≤ 0.8.02014-12-19
CVE-2014-6395 [HIGH] CWE-119 CVE-2014-6395: Heap-based buffer overflow in the dissector_postgresql function in dissectors/ec_postgresql.c in Ett
Heap-based buffer overflow in the dissector_postgresql function in dissectors/ec_postgresql.c in Ettercap before 0.8.1 allows remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted password length value that is inconsistent with the actual length of the password.
nvdosv
CVE-2014-9377P3HIGHCVSS 7.5PoCv0.8.12014-12-19
CVE-2014-9377 [HIGH] CWE-119 CVE-2014-9377: Heap-based buffer overflow in the nbns_spoof function in plug-ins/nbns_spoof/nbns_spoof.c in Etterca
Heap-based buffer overflow in the nbns_spoof function in plug-ins/nbns_spoof/nbns_spoof.c in Ettercap 0.8.1 allows remote attackers to cause a denial of service or possibly execute arbitrary code via a large netbios packet.
nvdosv
CVE-2014-9376P3HIGHCVSS 7.5PoCv0.8.12014-12-19
CVE-2014-9376 [HIGH] CVE-2014-9376: Integer underflow in Ettercap 0.8.1 allows remote attackers to cause a denial of service (out-of-bou
Integer underflow in Ettercap 0.8.1 allows remote attackers to cause a denial of service (out-of-bounds write) and possibly execute arbitrary code via a small (1) size variable value in the dissector_dhcp function in dissectors/ec_dhcp.c, (2) length value to the dissector_gg function in dissectors/ec_gg.c, or (3) string length to the get_decode_len function in
nvdosv
CVE-2014-9379P3HIGHCVSS 7.5PoCv0.8.12014-12-19
CVE-2014-9379 [HIGH] CWE-119 CVE-2014-9379: The radius_get_attribute function in dissectors/ec_radius.c in Ettercap 0.8.1 performs an incorrect
The radius_get_attribute function in dissectors/ec_radius.c in Ettercap 0.8.1 performs an incorrect cast, which allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via unspecified vectors, which triggers a stack-based buffer overflow.
nvdosv
CVE-2014-9378P3HIGHCVSS 7.5PoCv0.8.12014-12-19
CVE-2014-9378 [HIGH] CWE-20 CVE-2014-9378: Ettercap 0.8.1 does not validate certain return values, which allows remote attackers to cause a den
Ettercap 0.8.1 does not validate certain return values, which allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted (1) name to the parse_line function in mdns_spoof/mdns_spoof.c or (2) base64 encoded password to the dissector_imap function in dissectors/ec_imap.c.
nvdosv
CVE-2013-0722P4MEDIUMCVSS 4.4PoC≤ 0.7.5.1v0.6.3.1+5 more2013-01-11
CVE-2013-0722 [MEDIUM] CWE-119 CVE-2013-0722: Stack-based buffer overflow in the scan_load_hosts function in ec_scan.c in Ettercap 0.7.5.1 and ear
Stack-based buffer overflow in the scan_load_hosts function in ec_scan.c in Ettercap 0.7.5.1 and earlier might allow local users to gain privileges via a Trojan horse hosts list containing a long line.
nvdosv
CVE-2005-1796P3HIGHCVSS 7.5≥ 0, < 1:0.7.1-1.12005-05-31
CVE-2005-1796 [HIGH] CVE-2005-1796: Format string vulnerability in the curses_msg function in the Ncurses interface (ec_curses
Format string vulnerability in the curses_msg function in the Ncurses interface (ec_curses.c) for Ettercap before 0.7.3 allows remote attackers to execute arbitrary code.
osv
CVE-2010-3844P3HIGHCVSS 8.8v0.7.32019-11-12
CVE-2010-3844 [HIGH] CWE-120 CVE-2010-3844: An unchecked sscanf() call in ettercap before 0.7.5 allows an insecure temporary settings file to ov
An unchecked sscanf() call in ettercap before 0.7.5 allows an insecure temporary settings file to overflow a static-sized buffer on the stack.
nvdosv
CVE-2014-6396P3HIGHCVSS 7.5≤ 0.8.02014-12-19
CVE-2014-6396 [HIGH] CWE-119 CVE-2014-6396: The dissector_postgresql function in dissectors/ec_postgresql.c in Ettercap before 0.8.1 allows remo
The dissector_postgresql function in dissectors/ec_postgresql.c in Ettercap before 0.8.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted password length, which triggers a 0 character to be written to an arbitrary memory location.
nvdosv
CVE-2026-9365P3MEDIUMCVSS 6.3v0.8.0v0.8.1+2 more2026-05-24
CVE-2026-9365 [MEDIUM] CWE-122 Ettercap GG Dissector ec_gg.c FUNC_DECODER heap-based overflow
Ettercap GG Dissector ec_gg.c FUNC_DECODER heap-based overflow
A vulnerability has been found in Ettercap up to 0.8.3. The affected element is the function FUNC_DECODER of the file src/dissectors/ec_gg.c of the component GG Dissector. The manipulation of the argument gg leads to heap-based buffer overflow. The attack is possible to be carried out remotely. The complexity of an attack is rather high. Th
cvelistv5
CVE-2017-8366P3CRITICALCVSS 9.8≥ 0, < 1:0.8.2-52017-04-30
CVE-2017-8366 [CRITICAL] CVE-2017-8366: The strescape function in ec_strings
The strescape function in ec_strings.c in Ettercap 0.8.2 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted filter that is mishandled by etterfilter.
osv
CVE-2010-3843P3HIGHCVSS 7.8v0.7.3vettercap 0.7.52021-05-28
CVE-2010-3843 [HIGH] CWE-787 CVE-2010-3843: The GTK version of ettercap uses a global settings file at /tmp/.ettercap_gtk and does not verify ow
The GTK version of ettercap uses a global settings file at /tmp/.ettercap_gtk and does not verify ownership of this file. When parsing this file for settings in gtkui_conf_read() (src/interfacesgtk/ec_gtk_conf.c), an unchecked sscanf() call allows a maliciously placed settings file to overflow a statically-sized buffer on the stack.
nvdosv
CVE-2026-3606P4MEDIUMCVSS 5.5v0.8.4v0.8.4-Garofalo2026-03-05
CVE-2026-3606 [MEDIUM] CWE-119 CVE-2026-3606: A vulnerability has been found in Ettercap 0.8.4-Garofalo. Affected by this vulnerability is the fun
A vulnerability has been found in Ettercap 0.8.4-Garofalo. Affected by this vulnerability is the function add_data_segment of the file src/ettercap/utils/etterfilter/ef_output.c of the component etterfilter. The manipulation leads to out-of-bounds read. Local access is required to approach this attack. The exploit has been disclosed to the public and
nvd
CVE-2014-9380P4MEDIUMCVSS 5.0v0.8.12014-12-19
CVE-2014-9380 [MEDIUM] CWE-119 CVE-2014-9380: The dissector_cvs function in dissectors/ec_cvs.c in Ettercap 0.8.1 allows remote attackers to cause
The dissector_cvs function in dissectors/ec_cvs.c in Ettercap 0.8.1 allows remote attackers to cause a denial of service (out-of-bounds read) via a packet containing only a CVS_LOGIN signature.
nvdosv
CVE-2017-6430P4MEDIUMCVSS 5.5≤ 0.8.22017-03-15
CVE-2017-6430 [MEDIUM] CWE-125 CVE-2017-6430: The compile_tree function in ef_compiler.c in the Etterfilter utility in Ettercap 0.8.2 and earlier
The compile_tree function in ef_compiler.c in the Etterfilter utility in Ettercap 0.8.2 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted filter.
nvdosv
CVE-2014-9381P4MEDIUMCVSS 5.0v0.8.12014-12-19
CVE-2014-9381 [MEDIUM] CWE-189 CVE-2014-9381: Integer signedness error in the dissector_cvs function in dissectors/ec_cvs.c in Ettercap 0.8.1 allo
Integer signedness error in the dissector_cvs function in dissectors/ec_cvs.c in Ettercap 0.8.1 allows remote attackers to cause a denial of service (crash) via a crafted password, which triggers a large memory allocation.
nvdosv