BugSearch è un portale d'informazione sul mondo della sicurezza web e non che offre una serie di servizi utili a divulgare rapidamente ai propri utenti registrati gli avvisi di sicurezza scoperti nella rete, in modo tale da poter essere avvisati tempestivamente su bachi, falle di sistema, exploit e threats che affliggono le applicazioni e correggerle nel minor tempo possibile.

Novità: Invia Nuovo Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
A2billing 2.x - Backup File Download / Remote Code Execution04-09-2017
Mongoose Web Server 6.5 - Cross-Site Request Forgery / Remote Code Execution04-09-2017
iGreeting Cards 1.0 - SQL Injection04-09-2017
Wireless Repeater BE126 - Remote Code Execution04-09-2017
Joomla! Component CheckList 1.1.0 - SQL Injection03-09-2017
Joomla! Component Survey Force Deluxe 3.2.4 - 'invite' Parameter SQL Injection03-09-2017
Lotus Notes Diagnostic Tool 8.5/9.0 - Privilege Escalation02-09-2017
IBM Notes 8.5.x/9.0.x - Denial of Service02-09-2017
Motorola Bootloader - Kernel Cmdline Injection Secure Boot and Device Locking Bypass01-09-2017
OpenJPEG - 'mqc.c' Heap-Based Buffer Overflow01-09-2017
WordPress Plugin Participants Database < 1.7.5.10 - Cross-Site Scripting01-09-2017
Git <= 2.7.5 - Command Injection (Metasploit)31-08-2017
Joomla Component Huge-IT Video Gallery 1.0.9 - SQL Injection31-08-2017
Joomla Component Huge-IT Portfolio Gallery Plugin 1.0.7 - SQL Injection31-08-2017
IBM Notes 8.5.x/9.0.x - Denial of Service (Metasploit)31-08-2017
Sitefinity CMS 9.2 - Cross-Site Scripting31-08-2017
IBM Notes 8.5.x/9.0.x - Denial of Service (2)31-08-2017
Invoice Manager 3.1 - Cross-Site Request Forgery (Add Admin)30-08-2017
Oracle Java JDK/JRE < 1.8.0.131 / Apache Xerces 2.11.0 - 'PDF/Docx' Server Side Denial of Service30-08-2017
Joomla! Component Joomanager 2.0.0 - Arbitrary File Download30-08-2017
Joomla! Component Quiz Deluxe 3.7.4 - SQL Injection30-08-2017
Linux/x86 - Fork Bomb Shellcode (9 bytes)30-08-2017
Metasploit < 4.14.1-20170828 - Cross-Site Request Forgery30-08-2017
Brickcom IP Camera - Credentials Disclosure29-08-2017
QNAP Transcode Server - Command Execution (Metasploit)29-08-2017
User Login and Management - Multiple Vulnerabilities29-08-2017
D-Link DIR-600 - Authentication Bypass29-08-2017
FineCMS 1.0 - Multiple Vulnerabilities29-08-2017
The Next Generation of Genealogy Sitebuilding SQL Injection Vulnerability 29-08-2017
Schools Alert Management Script - Authentication Bypass28-08-2017