BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
WordPress WP User Frontend Plugin < 2.3.11 - Unrestricted File Upload 08-02-2016
WordPress Booking Calendar Contact Form Plugin <= 1.0.23 - Multiple Vulnerabilities 08-02-2016
Symphony CMS 2.6.3 &ndash; Multiple SQL Injection Vulnerabilities 04-02-2016
OpenDocMan 1.3.4 - CSRF Vulnerability 04-02-2016
NETGEAR ProSafe Network Management System NMS300 - Multiple Vulnerabilities 04-02-2016
GE Industrial Solutions UPS SNMP Adapter < 4.8 - Multiple Vulnerabilities 04-02-2016
DLink DVG&shy;N5402SP - Multiple Vulnerabilities 04-02-2016
WordPress User Meta Manager Plugin 3.4.6 - Privilege Escalation 04-02-2016
UliCMS <= v9.8.1 - SQL Injection 04-02-2016
ATutor 2.2 - Multiple XSS Vulnerabilities 04-02-2016
FTPShell Client 5.24 - (Create NewFolder) Local Buffer Overflow 04-02-2016
Viprinet Multichannel VPN Router 300 - Stored XSS Vulnerabilities 03-02-2016
yTree 1.94-1.1 - Local Buffer Overflow 03-02-2016
Jive Forums <= 5.5.25 - Directory Traversal Vulnerability 03-02-2016
Baumer VeriSens Application Suite 2.6.2 - Buffer Overflow Vulnerability 03-02-2016
Timeclock Software 0.995 - Multiple SQL Iinjection Vulnerabilities 03-02-2016
Toshiba Viewer v2 p3console - Local Denial of Service 02-02-2016
eClinicalWorks (CCMR) - Multiple Vulnerabilities 02-02-2016
pdfium - opj_t2_read_packet_header (libopenjpeg) Heap Use-After-Free 02-02-2016
Manage Engine Network Configuration Manager Build 11000 - CSRF 02-02-2016
WPS Office < 2016 - .xls Heap Memory Corruption 01-02-2016
Autonics DAQMaster 1.7.3 - DQP Parsing Buffer Overflow Code Execution 01-02-2016
WPS Office < 2016 - .ppt Heap Memory Corruption 01-02-2016
WPS Office < 2016 - .ppt drawingContainer Memory Corruption 01-02-2016
WPS Office < 2016 - .doc OneTableDocumentStream Memory Corruption 01-02-2016
x86_64 Linux Polymorphic Execve-Stack - 47 bytes 01-02-2016
Hippo CMS 10.1 - Multiple Vulnerabilities 01-02-2016
iScripts EasyCreate 3.0 - Multiple Vulnerabilities 01-02-2016
x86_64 Linux shell_reverse_tcp with Password - Polymorphic Version v2 01-02-2016
iScripts EasyCreate 3.0 - Remote Code Execution Exploit 01-02-2016