BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Advantech AdamView 4.30.003 - (.gni) SEH Buffer Overflow 10-12-2014
Offset2lib: Bypassing Full ASLR On 64bit Linux 05-12-2014
PBBoard CMS 3.0.1 - SQL Injection 05-12-2014
Windows Kerberos - Elevation of Privilege (MS14-068) 05-12-2014
Technicolor DT5130 V2.05.C29GV - Multiple Vulnerabilities 04-12-2014
Advertise With Pleasure! (AWP) 6.6 - SQL Injection Vulnerability 04-12-2014
Cart66 Lite WordPress Ecommerce 1.5.1.17 - Blind SQL Injection 03-12-2014
ManageEngine Netflow Analyzer / IT360 - Arbitrary File Download03-12-2014
Google Document Embedder 2.5.16 - mysql_real_escpae_string bypass SQL Injection 03-12-2014
Wordpress Nextend Facebook Connect Plugin 1.4.59 - XSS Vulnerability 02-12-2014
Prolink PRN2001 - Multiple Vulnerabilities 02-12-2014
IPUX Cube Type CS303C IP Camera - (UltraMJCamX.ocx) ActiveX Stack Buffer Overflow 02-12-2014
IPUX CL5452/CL5132 IP Camera - (UltraSVCamX.ocx) ActiveX Stack Buffer Overflow 02-12-2014
IPUX CS7522/CS2330/CS2030 IP Camera - (UltraHVCamX.ocx) ActiveX Stack Buffer Overflow 02-12-2014
TYPO3 ke DomPDF Extension - Remote Code Execution 02-12-2014
Tincd Post-Authentication Remote TCP Stack Buffer Overflow 02-12-2014
EntryPass N5200 - Credentials Exposure 02-12-2014
Mac OS X IOKit Keyboard Driver Root Privilege Escalation 02-12-2014
Drupal < 7.34 - Denial of Service 01-12-2014
WordPress <=4.0 Denial of Service Exploit 01-12-2014
Wordpress < 4.0.1 - Denial of Service 01-12-2014
CCH Wolters Kluwer PFX Engagement <= 7.1 - Local Privilege Escalation 28-11-2014
gassarit CMS Cross-Site Scripting Vulnerability27-11-2014
WordPress HTML 5 MP3 Player with Playlist Plugin - Full Path Disclosure 27-11-2014
Elipse E3 HTTP Denial of Service 26-11-2014
Mini-stream RM-MP3 Converter 3.1.2.1.2010.03.30 (.wax) SEH Buffer Overflow 26-11-2014
xEpan 1.0.1 - CSRF Vulnerability 26-11-2014
Device42 WAN Emulator 2.3 Traceroute Command Injection 26-11-2014
Device42 WAN Emulator 2.3 Ping Command Injection 26-11-2014
Android WAPPushManager - SQL Injection 26-11-2014