Filters apply as you choose them.
Buffer overflows in ntop running in web mode allows remote attackers to execute arbitrary commands.