BugSearch è un portale d'informazione sul mondo della sicurezza web e non che offre una serie di servizi utili a divulgare rapidamente ai propri utenti registrati gli avvisi di sicurezza scoperti nella rete, in modo tale da poter essere avvisati tempestivamente su bachi, falle di sistema, exploit e threats che affliggono le applicazioni e correggerle nel minor tempo possibile.

Novità: Invia Nuovo Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Vivotek IP Cameras - Remote Stack Overflow (PoC)12-12-2017
Resume Clone Script 2.0.5 - SQL Injection11-12-2017
PHP Multivendor Ecommerce 1.0 - 'sid' / 'searchcat' / 'chid1' SQL Injection11-12-2017
Apple macOS High Sierra 10.13 - 'ctl_ctloutput-leak' Information Leak07-12-2017
Dasan Networks GPON ONT WiFi Router H640X versions 12.02-01121 / 2.77p1-1124 / 3.03p2-1146 - Unauthenticated Remote Code Execution06-12-2017
Monstra CMS - Remote Code Execution06-12-2017
TeamViewer 11 < 13 (Windows 10 x86) - Inline Hooking / Direct Memory Modification Permission Change (PoC)04-12-2017
Ruby < 2.2.8 / < 2.3.5 / < 2.4.2 / < 2.5.0-preview1 - 'NET::Ftp' Command Injection02-12-2017
Abyss Web Server < 2.11.6 - Heap Memory Corruption01-12-2017
Artica Web Proxy 3.06 - Remote Code Execution01-12-2017
MistServer 2.12 - Cross-Site Scripting01-12-2017
macOS High Sierra - Root Privilege Escalation (Metasploit)30-11-2017
Jobs2Careers / Coroflot Clone - SQL Injection30-11-2017
Linux Kernel - 'The Huge Dirty Cow' Overwriting The Huge Zero Page30-11-2017
Axis Communications MPQT/PACS - Heap Overflow / Information Leakage30-11-2017
QEMU - NBD Server Long Export Name Stack Buffer Overflow29-11-2017
pfSense - Authenticated Group Member RCE (Metasploit)29-11-2017
Synology StorageManager 5.2 - Remote Root Command Execution28-11-2017
Android Gmail < 7.11.5.176568039 - Directory Traversal in Attachment Download28-11-2017
WordPress Plugin WooCommerce 2.0/3.0 - Directory Traversal28-11-2017
Microsoft Windows 10 Creators Update (version 1703) (x86) - 'WARBIRD' 'NtQuerySystemInformation ' Kernel Local Privilege Escalation27-11-2017
Microsoft Edge Chakra JIT - 'BailOutOnTaggedValue' Bailouts Type Confusion27-11-2017
Exim 4.89 - 'BDAT' Denial of Service27-11-2017
Microsoft Edge Chakra JIT - 'GlobOpt::OptTagChecks' Must Consider IsLoopPrePass Properly27-11-2017
Diving Log 6.0 - XML External Entity Injection27-11-2017
Microsoft Edge Chakra JIT - 'Inline::InlineCallApplyTarget_Shared' does not Return the return Instruction27-11-2017
ZTE ZXDSL 831CII - Improper Access Restrictions27-11-2017
Microsoft Edge Chakra JIT - Incorrect Function Declaration Scope27-11-2017
ALLPlayer 7.5 - Local Buffer Overflow (SEH Unicode)25-11-2017
Linux - 'mincore()' Uninitialized Kernel Heap Page Disclosure24-11-2017