BugSearch è un portale d'informazione sul mondo della sicurezza web e non che offre una serie di servizi utili a divulgare rapidamente ai propri utenti registrati gli avvisi di sicurezza scoperti nella rete, in modo tale da poter essere avvisati tempestivamente su bachi, falle di sistema, exploit e threats che affliggono le applicazioni e correggerle nel minor tempo possibile.

Novità: Invia Nuovo Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
D-Link DIR605L - Denial of Service14-11-2017
PSFTPd Windows FTP Server 10.0.4 Build 729 - Log Injection / Use-After-Free14-11-2017
D-Link DIR-850L - Unauthenticated OS Command Execution (Metasploit)14-11-2017
Dup Scout Enterprise 10.0.18 - 'Login' Buffer Overflow14-11-2017
Ulterius Server < 1.9.5.0 - Directory Traversal13-11-2017
Kirby CMS < 2.5.7 - Cross-Site Scripting13-11-2017
Web Viewer 1.0.0.193 (Samsung SRN-1670D) - Unrestricted File Upload13-11-2017
IKARUS anti.virus 2.16.7 - 'ntguard_x64' Privilege Escalation13-11-2017
Linux/x64 - Reverse TCP (127.0.0.1:4444/TCP) Shell (/bin/sh) + Password (1234567) Shellcode (104 bytes)11-11-2017
osCommerce 2.3.4.1 - Arbitrary File Upload11-11-2017
Symantec Endpoint Protection 12.1 - Tamper-Protection Bypass10-11-2017
pfSense 2.3.1_1 - Command Execution07-11-2017
ManageEngine Applications Manager 13 - SQL Injection07-11-2017
Ametys CMS 4.0.2 - Unauthenticated Password Reset07-11-2017
CMS Website by Webmonster.gr - SQL Injection07-11-2017
CMS Developed by Galcode - SQL Injection07-11-2017
Xlight FTP Server 3.8.8.5 - Buffer Overflow (PoC)07-11-2017
Linux Kernel 4.13 (Ubuntu 17.10) - 'waitid()' SMEP/SMAP Privilege Escalation06-11-2017
Oyabunstyle.de CMS SQL Injection06-11-2017
SMPlayer 17.11.0 - '.m3u' Buffer Overflow (PoC)05-11-2017
Avaya OfficeScan (IPO) < 10.1 - 'SoftConsole' Buffer Overflow (SEH)05-11-2017
Avaya OfficeScan (IPO) < 10.1 - ActiveX Buffer Overflow05-11-2017
Actiontec C1000A Modem - Backdoor Account04-11-2017
WordPress Plugin Userpro < 4.9.17.1 - Authentication Bypass04-11-2017
Ladon Framework for Python 0.9.40 - XML External Entity Expansion03-11-2017
GraphicsMagick - Memory Disclosure / Heap Overflow03-11-2017
tnftp - 'savefile' Arbitrary Command Execution (Metasploit)03-11-2017
WordPress Plugin JTRT Responsive Tables 4.1 - SQL Injection03-11-2017
Logitech Media Server 7.9.0 - 'favorites' Cross-Site Scripting03-11-2017
Logitech Media Server 7.9.0 - 'Radio URL' Cross-Site Scripting03-11-2017