BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
IBM System Director Agent DLL Injection 07-12-2012
Kordil EDMS v2.2.60rc3 SQL Injection Vulnerability 06-12-2012
Oracle MySQL for Microsoft Windows MOF Execution 06-12-2012
Adobe IndesignServer 5.5 SOAP Server Arbitrary Script Execution 06-12-2012
NVIDIA Install Application 2.1002.85.551 (NVI2.dll) Unicode Buffer Overflow PoC 06-12-2012
Tectia SSH USERAUTH Change Request Password Reset Vulnerability 05-12-2012
Ektron 8.02 XSLT Transform Remote Code Execution 05-12-2012
Symantec Messaging Gateway 9.5.3-3 Arbitrary File Download 03-12-2012
Symantec Messaging Gateway 9.5.3-3 CSRF Vulnerability 03-12-2012
Opera Web Browser 12.11 Crash PoC 03-12-2012
SchoolCMS Persistent XSS 03-12-2012
myBB KingChat Plugin SQL Injection 03-12-2012
FirePass SSL VPN Unauthenticated Local File Inclusion 03-12-2012
MySQL Windows Remote System Level Exploit (Stuxnet technique) 0day 02-12-2012
SSH.com Communications SSH Tectia Authentication Bypass Remote Zeroday Exploit 02-12-2012
MySQL Remote Preauth User Enumeration Zeroday 02-12-2012
SilverStripe CMS 3.0.2 Multiple Vulnerabilities 30-11-2012
SmartCMS (index.php, menuitem param) SQL Injection & Cross Site Scripting Vulnerabilities 30-11-2012
Free Hosting Manager 2.0 (packages.php, id param) SQL Injection Vulnerability 30-11-2012
Windows AlwaysInstallElevated MSI 29-11-2012
FCKEditor ASP Version 2.6.8 File Upload Protection Bypass 29-11-2012
Oracle OpenSSO 8.0 Multiple XSS POST Injection Vulnerabilities 29-11-2012
Apple QuickTime 7.7.2 MIME Type Buffer Overflow 28-11-2012
Gleamtech FileVista/FileUltimate 4.6 Directory Traversal 28-11-2012
mcrypt <= 2.6.8 stack-based buffer overflow poc 26-11-2012
PRADO PHP Framework 3.2.0 Arbitrary File Read Vulnerability 26-11-2012
SmartCMS (index.php, idx parameter) SQL Injection Vulnerability 26-11-2012
Websense Proxy Filter Bypass 26-11-2012
Aviosoft Digital TV Player Professional 1.x (Direct Retn) 26-11-2012
BlazeVideo HDTV Player 6.6 Professional (Direct Retn) 26-11-2012