BugSearch è un portale d'informazione sul mondo della sicurezza web e non che offre una serie di servizi utili a divulgare rapidamente ai propri utenti registrati gli avvisi di sicurezza scoperti nella rete, in modo tale da poter essere avvisati tempestivamente su bachi, falle di sistema, exploit e threats che affliggono le applicazioni e correggerle nel minor tempo possibile.

Novità: Invia Nuovo Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Apache/mod_ssl OpenSSL < 0.9.6d / < 0.9.7-beta2 - 'openssl-too-open.c' SSL2 KEY_ARG Overflow Exploit 08-09-2016
Adobe ColdFusion < 11 Update 10 - XML External Entity Injection 07-09-2016
SugarCRM 6.5.23 - REST PHP Object Injection Exploit (Metasploit) 07-09-2016
TeamViewer 11.0.65452 (64 bit) - Local Credentials Disclosure 07-09-2016
CumulusClips 2.4.1 - Multiple Vulnerabilities 07-09-2016
Freepbx 13.0.x < 13.0.154 - Remote Command Execution 07-09-2016
Multiple Applications - Local Credentials Disclosure 07-09-2016
WIN-911 7.17.00 - Multiple Vulnerabilities 06-09-2016
glibc - getaddrinfo Stack Based Buffer Overflow 06-09-2016
PHPIPAM 1.2.1 - Multiple Vulnerabilities 06-09-2016
Sony Playstation 4 (PS4) 3.15 < 3.55 - WebKit Code Execution (PoC)06-09-2016
ArcServe UDP 6.0.3792 Update 2 Build 516 - Unquoted Service Path Privilege Escalation 05-09-2016
WordPress RB Agency Plugin 2.4.7 - Local File Disclosure 05-09-2016
Windows x86 - Persistent Reverse Shell TCP 05-09-2016
MySQL 5.5.45 (64bit) - Local Credentials Disclosure 05-09-2016
Navicat Premium 11.2.11 (64bit) - Local Database Password Disclosure 05-09-2016
Belkin F9K1122v1 1.00.30 - Buffer Overflow (via Cross-Site Request Forgery) 04-09-2016
FortiClient SSLVPN 5.4 - Credentials Disclosure 01-09-2016
PHP 5.0.0 - snmpset() Local Denial of Service 31-08-2016
ZKTeco ZKTime.Net 3.0.1.6 - Insecure File Permissions Privilege Escalation 31-08-2016
ZKTeco ZKBioSecurity 3.0 - Hardcoded Credentials Remote SYSTEM Code Execution 31-08-2016
ZKTeco ZKBioSecurity 3.0 - (Add Superadmin) Cross-Site Request Forgery 31-08-2016
PHP 7.0 - AppendIterator::append Local Denial of Service 31-08-2016
ZKTeco ZKBioSecurity 3.0 - (visLogin.jsp) Local Authorization Bypass 31-08-2016
ZKTeco ZKAccess Security System 5.3.1 - Persistent Cross-Site Scripting 31-08-2016
ZKTeco ZKBioSecurity 3.0 - Directory Traversal 31-08-2016
PHP 7.0 - JsonSerializable::jsonSerialize json_encode Local Denial of Service 31-08-2016
ZKTeco ZKAccess Professional 3.5.3 - Insecure File Permissions Privilege Escalation 31-08-2016
PHP 5.0.0 - snmpwalkoid() Local Denial of Service 31-08-2016
PHP 5.0.0 - fbird_[p]connect() Local Denial of Service 31-08-2016