BugSearch è un portale d'informazione sul mondo della sicurezza web e non che offre una serie di servizi utili a divulgare rapidamente ai propri utenti registrati gli avvisi di sicurezza scoperti nella rete, in modo tale da poter essere avvisati tempestivamente su bachi, falle di sistema, exploit e threats che affliggono le applicazioni e correggerle nel minor tempo possibile.

Novità: Invia Nuovo Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Complain Management System - Hard-Coded Credentials / Blind SQL injection10-10-2017
Apache Tomcat < 9.0.1 (Beta) / < 8.5.23 / < 8.0.47 / < 7.0.8 - JSP Upload Bypass / Remote Code Execution09-10-2017
VX Search Enterprise 10.1.12 - Buffer Overflow09-10-2017
ClipShare 7.0 - SQL Injection09-10-2017
OrientDB 2.2.2 - 2.2.22 - Remote Code Execution (Metasploit)09-10-2017
Rancher Server - Docker Daemon Code Execution (Metasploit)09-10-2017
QNAP HelpDesk < 1.1.12 - SQL Injection09-10-2017
PHP Melody 2.7.3 - Multiple Vulnerabilities09-10-2017
PyroBatchFTP 3.17 - Buffer Overflow (SEH)07-10-2017
Microsoft Windows 10 x64 RS2 - 'win32kfull!bFill' Pool Overflow06-10-2017
Easy MPEG/AVI/DIVX/WMV/RM to DVD - 'Enter User Name' Buffer Overflow (SEH)05-10-2017
WebKit JSC - 'BytecodeGenerator::emitGetByVal' Incorrect Optimization (2)04-10-2017
ClipBucket 2.8.3 - Remote Code Execution04-10-2017
Fiberhome AN5506-04-F - Command Injection03-10-2017
DiskBoss Enterprise 8.4.16 - Local Buffer Overflow03-10-2017
EPESI 1.8.2 rev20170830 - Cross-Site Scripting03-10-2017
Dnsmasq < 2.78 - Stack-Based Overflow02-10-2017
Dnsmasq < 2.78 - Integer Underflow02-10-2017
Dnsmasq < 2.78 - Information Leak02-10-2017
Dnsmasq < 2.78 - Heap-Based Overflow02-10-2017
Dnsmasq < 2.78 - Lack of free() Denial of Service02-10-2017
OpenText Document Sciences xPression 4.5SP1 Patch 13 - 'jobRunId' SQL Injection02-10-2017
Qmail SMTP - Bash Environment Variable Injection (Metasploit)02-10-2017
OpenText Document Sciences xPression 4.5SP1 Patch 13 - 'documentId' SQL Injection02-10-2017
Dnsmasq < 2.78 - 2-byte Heap-Based Overflow02-10-2017
UCOPIA Wireless Appliance < 5.1 (Captive Portal) - Unauthenticated Root Remote Code Execution02-10-2017
UCOPIA Wireless Appliance < 5.1.8 - Privilege Escalation02-10-2017
phpCollab 2.5.1 - SQL Injection02-10-2017
UCOPIA Wireless Appliance < 5.1.8 - Restricted Shell Escape02-10-2017
phpCollab 2.5.1 - Arbitrary File Upload02-10-2017