BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
i.Hex 0.98 - Local Crash PoC 06-11-2014
MINIX 3.3.0 Local Denial of Service PoC 06-11-2014
i-FTP 2.20 - Buffer Overflow SEH Exploit 06-11-2014
VMware Workstations 10.0.0.40273 vmx86.sys Arbitrary Kernel Read 06-11-2014
Citrix NetScaler SOAP Handler Remote Code Execution 06-11-2014
Symantec Endpoint Protection 12.1.4023.4080 - Multiple Vulnerabilities 06-11-2014
i.Mage 1.11 - Local Crash PoC 06-11-2014
Belkin n750 jump login Parameter Buffer Overflow 06-11-2014
Linux Local Root => 2.6.39 (32-bit & 64-bit) - Mempodipper #2 05-11-2014
ManageEngine EventLog Analyzer - Multiple Vulnerabilities (2)05-11-2014
Mac OS X Mavericks IOBluetoothHCIUserClient Privilege Escalation 03-11-2014
Xerox Multifunction Printers (MFP) "Patch" DLM Vulnerability 03-11-2014
Drupal 7.32 Pre Auth SQL Injection 03-11-2014
Ahrareandeysheh CMS Cross-Site Scripting Vulnerability03-11-2014
ZTE Modem ZXDSL 531BIIV7.3.0f_D09_IN - Stored XSS Vulnerability 03-11-2014
PARSADEV CMS Cross-Site Scripting Vulnerability01-11-2014
MAARCH 1.4 - Arbitrary File Upload 29-10-2014
CUPS Filter Bash Environment Variable Code Injection 29-10-2014
MAARCH 1.4 - SQL Injection 29-10-2014
IBM Tivoli Monitoring 6.2.2 kbbacf1 - Privilege Escalation 29-10-2014
Linux/x86-64 - Add Map (127.1.1.1 google.lk) In /etc/hosts Shellcode (110 bytes)29-10-2014
Konke Smart Plug K - Authentication Bypass Vulnerability 29-10-2014
Windows TrackPopupMenu Win32k NULL Pointer Dereference 28-10-2014
vBulletin Tapatalk - Blind SQL Injection 28-10-2014
Enalean Tuleap 7.4.99.5 - Blind SQL Injection 28-10-2014
Enalean Tuleap 7.4.99.5 - Remote Command Execution 28-10-2014
Enalean Tuleap 7.2 - XXE File Disclosure 28-10-2014
phpfusion Denial of Service Vulnerability28-10-2014
Binary File Descriptor Library (libbfd) - Out-of-Bounds Crash 27-10-2014
Centreon SQL and Command Injection 27-10-2014