BugSearch è un portale d'informazione sul mondo della sicurezza web e non che offre una serie di servizi utili a divulgare rapidamente ai propri utenti registrati gli avvisi di sicurezza scoperti nella rete, in modo tale da poter essere avvisati tempestivamente su bachi, falle di sistema, exploit e threats che affliggono le applicazioni e correggerle nel minor tempo possibile.

Novità: Invia Nuovo Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
GOM Player 2.0.12.3375 (.ASX File) Stack Overflow Exploit08-01-2009
CuteNews <= 1.4.6 (ip ban) XSS-Command Execution Exploit (adm req.)08-01-2009
Samba < 3.0.20 Remote Heap Overflow Exploit (oldie but goodie)08-01-2009
CuteNews <= 1.4.6 (ip ban) Command Execution Exploit (admin req.)08-01-2009
PHP-Fusion Mod Members CV (job) 1.0 SQL Injection Vulnerability07-01-2009
PHP-Fusion Mod E-Cart 1.3 (items.php CA) SQL Injection Vulnerability07-01-2009
QuoteBook (poll.inc) Remote Config File Disclosure Vulnerability07-01-2009
Perception LiteServe 2.0.1 (user) Remote Buffer Overflow PoC07-01-2009
Audacity 1.6.2 (.aup File) Remote off by one Crash Exploit07-01-2009
VUPlayer <= 2.49 .PLS Universal Buffer Overflow Exploit07-01-2009
WinAmp GEN_MSN Plugin Heap Buffer Overflow PoC07-01-2009
CoolPlayer BUILD 219 (PlaylistSkin) Buffer Overflow Exploit07-01-2009
Joomla <= 1.5.8 (xstandard editor) Local Directory Traversal Vulnerability07-01-2009
Cain & Abel 4.9.25 (Cisco IOS-MD5) Local Buffer Overflow Exploit07-01-2009
Goople <= 1.8.2 (frontpage.php) Blind SQL Injection Exploit06-01-2009
Rosoft Media Player 4.2.1 Local Buffer Overflow Exploit06-01-2009
Debian GNU-Linux XTERM (DECRQSS-comments) Weakness Vulnerability06-01-2009
RiotPix <= 0.61 (Auth Bypass) SQL Injection Vulnerability06-01-2009
ezPack 4.2b2 (XSS-SQL) Multiple Remote Vulnerabilities06-01-2009
Oracle 10g SYS.LT.COMPRESSWORKSPACETREE SQL Injection Exploit06-01-2009
PHPAuctionSystem Multiple Remote File Inclusion Vulnerabilities06-01-2009
RiotPix <= 0.61 (forumid) Blind SQL Injection Exploit06-01-2009
Oracle 10g SYS.LT.REMOVEWORKSPACE SQL Injection Exploit06-01-2009
Oracle 10g SYS.LT.MERGEWORKSPACE SQL Injection Exploit06-01-2009
BlogHelper (common_db.inc) Remote Config File Disclosure Vulnerability06-01-2009
PollHelper (poll.inc) Remote Config File Disclosure Vulnerability06-01-2009
SeaMonkey <= 1.1.14 (marquee) Denial of Service Exploit06-01-2009
ItCMS <= 2.1a (Auth Bypass) SQL Injection Vulnerability06-01-2009
playSMS 0.9.3 Multiple Remote-Local File Inclusion Vulnerabilities06-01-2009
PHPAuctionSystem Insecure Cookie Handling Vulnerability05-01-2009