BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Wordpress Theme-Check Plugin Full Path Disclosure Vulnerability17-01-2014
Wordpress twentyeleven Theme Full Path Disclosure Vulnerability17-01-2014
SmarterMail Enterprise and Standard <=11.x - Stored XSS 17-01-2014
haneWIN DNS Server 1.5.3 - Denial of Service 17-01-2014
PHPJabbers Vacation Rental Script 3.0 - Multiple Vulnerabilities 15-01-2014
PHPJabbers Hotel Booking System 3.0 - Multiple Vulnerabilities 15-01-2014
PHPJabbers Vacation Packages Listing 2.0 - Multiple Vulnerabilities 15-01-2014
PHPJabbers Property Listing Script 2.0 - Add Admin CSRF Vulnerability 15-01-2014
PHPJabbers Pet Listing Script 1.0 - Multiple Vulnerabilities 15-01-2014
Collabtive 1.1 (managetimetracker.php, id param) - SQL Injection 15-01-2014
Horizon QCMS 4.0 - Multiple Vulnerabilities 14-01-2014
Burden 1.8 - Authentication Bypass 14-01-2014
SerComm Device Remote Code Execution 14-01-2014
Conceptronic Wireless Pan & Tilt Network Camera - CSRF Vulnerability 14-01-2014
PHPJabbers Event Booking Calendar 2.0 - Multiple Vulnerabilities 14-01-2014
PHPJabbers Car Rental Script - Multiple Vulnerabilities 14-01-2014
PHPJabbers Appointment Scheduler 2.0 - Multiple Vulnerabilities 14-01-2014
PHPJabbers Job Listing Script - Multiple Vulnerabilities 14-01-2014
Auto Classifieds Script 2.0 - Add Admin CSRF Vulnerability 14-01-2014
SoapUI 4.6.3 - Remote Code Execution 14-01-2014
Feixun Wireless Router FWR-604H - Remote Code Execution Exploit 14-01-2014
Cubic CMS - Multiple Vulnerabilities 07-01-2014
IBM Forms Viewer Unicode Buffer Overflow 07-01-2014
IcoFX Stack Buffer Overflow 07-01-2014
vTiger CRM SOAP AddEmailAttachment Arbitrary File Upload 07-01-2014
Seagate BlackArmor NAS sg2000-2000.1331 - Cross Site Request Forgery 06-01-2014
Seagate BlackArmor NAS sg2000-2000.1331 - Multiple Persistent Cross Site Scripting Vulnerabilities 06-01-2014
Seagate BlackArmor NAS sg2000-2000.1331 - Remote Command Execution 06-01-2014
Seagate BlackArmor - Root Exploit 06-01-2014
HIOX GUEST BOOK DB based utility V1.0 PHP Injection Vulnerability05-01-2014