BugSearch è un portale d'informazione sul mondo della sicurezza web e non che offre una serie di servizi utili a divulgare rapidamente ai propri utenti registrati gli avvisi di sicurezza scoperti nella rete, in modo tale da poter essere avvisati tempestivamente su bachi, falle di sistema, exploit e threats che affliggono le applicazioni e correggerle nel minor tempo possibile.

Novità: Invia Nuovo Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Reason Core Security - Unquoted Service Path Privilege Escalation14-11-2016
CMS EditMe - Privilege Escalate CSRF Vulnerability14-11-2016
ATutor 2.2.2 - Cross-Site Request Forgery (Add New Course) 13-11-2016
Schoolhos CMS 2.29 - Remote Code Execution / SQL Injection 13-11-2016
WHM Panel Mail Delivery Reports crash database Vulnerability12-11-2016
InvoicePlane 1.4.8 - Password Reset 11-11-2016
MyBB 1.8.6 - Cross-Site Scripting 10-11-2016
Microsoft WININET - CHttp­Header­Parser::Parse­Status­Line Out-of-Bounds Read (MS16-104 / MS16-105) 10-11-2016
Microsoft Internet Explorer 9-11 MSHTML - PROPERTYDESC::Handle­Style­Component­Property Out-of-Bounds Read (MS16-104) 10-11-2016
4Images 1.7.13 - SQL Injection 10-11-2016
Microsoft Windows - LSASS SMB NTLM Exchange Null-Pointer Dereference (MS16-137) 09-11-2016
VBScript 5.8.7600.16385 / 5.8.9600.16384 - RegExpComp::PnodeParse Out-of-Bounds Read 09-11-2016
Adobe Connect 9.5.7 - Cross-Site Scripting 09-11-2016
e107 CMS 2.1.2 - Privilege Escalation 09-11-2016
Microsoft Windows Kernel - win32k Denial of Service (MS16-135) 09-11-2016
D-Link ADSL Router DSL-2730U/2750U/2750E - Remote File Disclosure 08-11-2016
PLANET ADSL Router AND-4101 - Remote File Disclosure 08-11-2016
MOVISTAR ADSL Router BHS_RTA - Remote File Disclosure 08-11-2016
NETGEAR ADSL Router JNR1010 - Authenticated Remote File Disclosure 08-11-2016
NETGEAR ADSL Router WNR500/WNR612v3/JNR1010/JNR2010 - Authenticated Remote File Disclosure 08-11-2016
WordPress Plugin 'XCloner' 3.1.5 - Multiple Vulnerabilities 08-11-2016
WordPress Plugin WassUp Real Time Analytics 1.9 - Persistent Cross-Site Scripting 08-11-2016
WordPress Plugin 404 to 301 2.2.8 - Persistent Cross-Site Scripting 08-11-2016
Solaris 7/8/9 CDE libDtHelp - Buffer Overflow Non-Exec Stack Privilege Escalation 08-11-2016
Solaris 8/9 ps - Environment Variable Information leak 08-11-2016
Linux Kernel 2.6.x < 2.6.7-rc3 - 'sys_chown()' Privilege Escalation 08-11-2016
Solaris 8/9 passwd(1) - 'circ()' Stack-Based Buffer Overflow Privilege Escalation 08-11-2016
Solaris 7/8/9 CDE libDtHelp - Buffer Overflow dtprintinfo Privilege Escalation 08-11-2016
Linux Kernel - TCP Related Read Use-After-Free 08-11-2016
Eir D1000 Wireless Router - WAN Side Remote Command Injection (Metasploit) 08-11-2016