BugSearch è un portale d'informazione sul mondo della sicurezza web e non che offre una serie di servizi utili a divulgare rapidamente ai propri utenti registrati gli avvisi di sicurezza scoperti nella rete, in modo tale da poter essere avvisati tempestivamente su bachi, falle di sistema, exploit e threats che affliggono le applicazioni e correggerle nel minor tempo possibile.

Novità: Invia Nuovo Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Gongwalker API Manager 1.1 - Cross-Site Request Forgery10-05-2017
QNAP PhotoStation 5.2.4 / MusicStation 4.8.4 - Authentication Bypass10-05-2017
Cisco DPC3928 Router - Arbitrary File Disclosure10-05-2017
CMS Made Simple 2.1.6 - Multiple Vulnerabilities10-05-2017
SAP SAPCAR 721.510 - Heap-Based Buffer Overflow10-05-2017
wolfSSL 3.10.2 - x509 Certificate Text Parsing Off-by-One09-05-2017
LG G4 MRA58K - 'mkvparser::Block::Block' Heap Buffer Overflows09-05-2017
LG G4 MRA58K - 'liblg_parser_mkv.so' Bad Allocation Calls09-05-2017
Crypttech CryptoLog - Remote Code Execution (Metasploit)09-05-2017
LG G4 MRA58K - 'mkvparser::Tracks constructor' Failure to Initialise Pointers09-05-2017
Oracle GoldenGate 12.1.2.0.0 - Unauthenticated Remote Code Execution09-05-2017
I, Librarian 4.6 / 4.7 - Command Injection / Server Side Request Forgery / Directory Enumeration / Cross-Site Scripting09-05-2017
Microsoft Windows 8 / 8.1 / 10 / Windows Server / SCEP, Microsoft Security Essentials - 'MsMpEng' Remotely Exploitable Type Confusion09-05-2017
RPCBind / libtirpc - Denial of Service08-05-2017
Xen 64bit PV Guest - pagetable use-after-type-change Breakout08-05-2017
Gemalto SmartDiag Diagnosis Tool < 2.5 - Buffer Overflow (SEH)08-05-2017
Linux/x86 - Disable ASLR Shellcode (80 bytes)08-05-2017
Linux/x86-64 - Reverse Shell Shellcode (IPv6) (113 bytes)08-05-2017
WordPress Plugin WebDorado Gallery 1.3.29 - SQL Injection05-05-2017
ViMbAdmin 3.0.15 - Multiple Cross-Site Request Forgery05-05-2017
CloudBees Jenkins 2.32.1 - Java Deserialization05-05-2017
Sitecore CMS 8.2 - Cross-Site Scripting / Arbitrary File Disclosure05-05-2017
Technicolor DPC3928SL - SNMP Authentication Bypass05-05-2017
Safari 10.0.3 - 'JSC::CachedCall' Use-After-Free04-05-2017
Internet Explorer 11 - CMarkup::DestroySplayTree Use-After-Free03-05-2017
WordPress 4.6 - Unauthenticated Remote Code Execution03-05-2017
WordPress < 4.7.4 - Unauthorized Password Reset03-05-2017
Serviio PRO 1.8 DLNA Media Streaming Server - REST API Arbitrary Password Change03-05-2017
Serviio PRO 1.8 DLNA Media Streaming Server - REST API Arbitrary Code Execution03-05-2017
Serviio PRO 1.8 DLNA Media Streaming Server - Local Privilege Escalation03-05-2017