BugSearch è un portale d'informazione sul mondo della sicurezza web e non che offre una serie di servizi utili a divulgare rapidamente ai propri utenti registrati gli avvisi di sicurezza scoperti nella rete, in modo tale da poter essere avvisati tempestivamente su bachi, falle di sistema, exploit e threats che affliggono le applicazioni e correggerle nel minor tempo possibile.

Novità: Invia Nuovo Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
PHP <= 5.2.1 substr_compare() Information Leak Exploit07-03-2007
mod_security <= 2.1.0 (ASCIIZ byte) POST Rules Bypass Vulnerability07-03-2007
PHP < 4.4.5 - 5.2.1 (shmop Functions) Local Code Execution Exploit07-03-2007
PHP < 4.4.5 - 5.2.1 (shmop) SSL RSA Private-Key Disclosure Exploit07-03-2007
Flat Chat 2.0 (include online.txt) Remote Code Execution Vulnerability07-03-2007
PHP COM extensions (inconsistent Win32) safe_mode Bypass Exploit07-03-2007
Mercury-32 Mail Server <= 4.01b (check) Buffer Overflow Exploit PoC06-03-2007
MS Windows (.doc File) Malformed Pointers Denial of Service Exploit06-03-2007
WinZip <= 10.0.7245 FileView ActiveX Buffer Overflow Exploit v206-03-2007
Konqueror 3.5.5 (JavaScript Read of FTP Iframe) DoS Exploit05-03-2007
Links Management Application 1.0 (lcnt) Remote SQL Injection Exploit05-03-2007
PHP <= 4.4.6 mssql_[p]connect() Local Buffer Overflow Exploit05-03-2007
Rigter Portal System (RPS) 6.2 Remote Blind SQL Injection Exploit04-03-2007
PHP wddx_deserialize() String Append Crash Exploit04-03-2007
PHP 4.4.3 - 4.4.6 phpinfo() Remote XSS Vulnerability04-03-2007
News-Letterman 1.1 (eintrag.php sqllog) Remote File Include Exploit04-03-2007
Asterisk <= 1.2.15 - 1.4.0 pre-auth Remote Denial of Service Exploit04-03-2007
AJ Auction Pro All Versions (subcat.php) Remote SQL Injection Exploit04-03-2007
AJ Dating 1.0 (view_profile.php) Remote SQL Injection Exploit04-03-2007
AJ Classifieds 1.0 (postingdetails.php) Remote SQL Injection Exploit04-03-2007
AJ Forum 1.0 (topic_title.php) Remote SQL Injection Exploit04-03-2007
RRDBrowse <= 1.6 Remote Arbitrary File Disclosure Vulnerability04-03-2007
PHP < 4.4.5 - 5.2.1 php_binary Session Deserialization Information Leak04-03-2007
PHP < 4.4.5 - 5.2.1 WDDX Session Deserialization Information Leak04-03-2007
webSPELL <= 4.01.02 Remote PHP Code Execution Exploit03-03-2007
PHP <= 4.4.4 unserialize() ZVAL Reference Counter Overflow Exploit PoC02-03-2007
MailEnable Pro-Ent <= 2.37 (APPEND) Remote Buffer Overflow Exploit02-03-2007
Mani Stats Reader <= 1.2 (ipath) Remote File Include Vulnerability02-03-2007
Netrek 2.12.0 pmessage2() Remote Limited Format String Exploit02-03-2007
webSPELL <= 4.01.02 Multiple Remote SQL Injection Exploit02-03-2007