BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

Register now to start receiving our security alerts of your favourite applications!


Last Advisories
RevSense (Auth bypass) Remote SQL Injection Vulnerability19-11-2008
MauryCMS <= 0.53.2 Remote Shell Upload Exploit19-11-2008
MyTopix <= 1.3.0 (notes send) Remote SQL Injection Exploit19-11-2008
Alex News-Engine 1.5.1 Remote Arbitrary File Upload Vulnerability19-11-2008
Alex Article-Engine 1.3.0 (fckeditor) Arbitrary File Upload Vulnerability19-11-2008
PunBB (Private Messaging System 1.2.x) Multiple LFI Exploit19-11-2008
E-topbiz Link Back Checker 1 Insecure Cookie Handling Vulnerability18-11-2008
Free Directory Script 1.1.1 (API_HOME_DIR) RFI Vulnerability 18-11-2008
Pluck CMS 4.5.3 (g_pcltar_lib_dir) Local File Inclusion Vulnerability18-11-2008
Musicbox 2.3.8 (viewalbums.php artistId) SQL Injection Vulnerability18-11-2008
No-IP DUC <= 2.1.7 Remote Code Execution Exploit18-11-2008
CUPS 1.3.7 CSRF (add rss subscription) Remote Crash Exploit18-11-2008
SaturnCMS (view) Blind SQL Injection Vulnerability17-11-2008
Simple Customer 1.2 (Auth Bypass) SQL Injection Vulnerability17-11-2008
Exodus 0.10 (uri handler) Arbitrary Parameter Injection Vulnerability17-11-2008
Jadu Galaxies (categoryID) Blind SQL Injection Vulnerability17-11-2008
phpfan 3.3.4 (init.php includepath) Remote File Inclusion Vulnerability17-11-2008
Chilkat Socket activex 2.3.1.1 Remote Arbitrary File Creation Exploit17-11-2008
Q-Shop 3.0 Remote XSS-SQL Injection Vulnerabilities17-11-2008
E-topbiz AdManager 4 (group) Blind SQL Injection Vulnerability17-11-2008
Myiosoft easygallery (catid) Blind SQL Injection Vulnerability17-11-2008
FREEze Greetings 1.0 Remote Password Retrieve Exploit17-11-2008
mxCamArchive 2.2 Bypass Config Download Vulnerability17-11-2008
OpenASP <= 3.0 Blind SQL Injection Vulnerability17-11-2008
Opera 9.62 file:-- Local Heap Overflow Exploit17-11-2008
Ultrastats 0.2.144-0.3.11 (index.php serverid) SQL Injection Vulnerability17-11-2008
VideoScript <= 4.0.1.50 Admin Change Password Exploit17-11-2008
phpstore Wholesale (track.php?id) SQL Injection Vulnerability16-11-2008
FloSites Blog Multiple Remote SQL Injection Vulnerabilities16-11-2008
MS Windows Server Service Code Execution Exploit (MS08-067) (2k-2k3)16-11-2008