BugSearch è un portale d'informazione sul mondo della sicurezza web e non che offre una serie di servizi utili a divulgare rapidamente ai propri utenti registrati gli avvisi di sicurezza scoperti nella rete, in modo tale da poter essere avvisati tempestivamente su bachi, falle di sistema, exploit e threats che affliggono le applicazioni e correggerle nel minor tempo possibile.

Novità: Invia Nuovo Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
macOS Kernel 10.12.3 (16D32) - Use-After-Free Due to Double-Release in posix_spawn 04-04-2017
macOS/iOS Kernel 10.12.3 (16D32) - Bad Locking in necp_open Use-After-Free 04-04-2017
macOS/iOS Kernel 10.12.3 (16D32) - SIOCGIFORDER Socket ioctl Off-by-One Memory Corruption 04-04-2017
macOS/iOS Kernel 10.12.3 (16D32) - SIOCSIFORDER Socket ioctl Memory Corruption Due to Bad Bounds Checking 04-04-2017
Apache Tomcat 6/7/8/9 - Information Disclosure 04-04-2017
Maian Uploader 4.0 - 'user' Parameter SQL Injection 04-04-2017
Maian Survey 1.1 - 'survey' Parameter SQL Injection 04-04-2017
Maian Greetings 2.1 - 'cat' Parameter SQL Injection 04-04-2017
Bluecoat ASG 6.6/CAS 1.3 - OS Command Injection (Metasploit) 03-04-2017
Bluecoat ASG 6.6/CAS 1.3 - Privilege Escalation (Metasploit) 03-04-2017
BackBox OS - Denial of Service 02-04-2017
Zyxel, EMG2926 < V1.00(AAQT.4)b8 - OS Command Injection 02-04-2017
Pixie 1.0.4 - Arbitrary File Upload 02-04-2017
Linux/ARM - execve("/bin/sh", NULL, 0) Shellcode (34 bytes)31-03-2017
Membership Formula - 'order' Parameter SQL Injection 31-03-2017
Apple macOS/IOS 10.12.2(16C67) - mach_msg Heap Overflow 30-03-2017
Sync Breeze Enterprise 9.5.16 - 'GET' Buffer Overflow (SEH) 29-03-2017
Disk Sorter Enterprise 9.5.12 - 'Import Command' Buffer Overflow 29-03-2017
Sync Breeze Enterprise 9.5.16 - 'Import Command' Buffer Overflow 29-03-2017
DiskBoss Enterprise 7.8.16 - 'Import Command' Buffer Overflow 29-03-2017
Opensource Classified Ads Script - 'keyword' Parameter SQL Injection 29-03-2017
Linux/x86 - execve(/bin/sh") Shellcode (19 bytes) 29-03-2017
Microsoft Outlook - HTML Email Denial of Service 28-03-2017
VX Search Enterprise 9.5.12 - 'Verify Email' Buffer Overflow 28-03-2017
Intermec PM43 Industrial Printer - Privilege Escalation 28-03-2017
DzSoft PHP Editor 4.2.7 - File Enumeration 28-03-2017
Internet Information Services (IIS) 6.0 WebDAV - 'ScStoragePathFromUrl' Buffer Overflow 27-03-2017
Disk Sorter Enterprise 9.5.12 - Local Buffer Overflow 27-03-2017
Professional Bus Booking Script - 'hid_Busid' Parameter SQL Injection 27-03-2017
CouponPHP CMS 3.1 - 'code' Parameter SQL Injection 27-03-2017