BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Joomla Simple File Lister module <= 1.0 Directory Traversal Vulnerability 28-08-2011
yahoo! player 1.5 (.m3u) Universal Buffer Overflow (SEH) 28-08-2011
JCE Joomla Extension <=2.0.10 Multiple Vulnerabilities 28-08-2011
Ferdows CMS Pro <=1.1.0 Multiple Vulnerabilities 28-08-2011
WordPress MM Forms Community plugin <= 1.2.3 SQL Injection Vulnerability 27-08-2011
Free MP3 CD Ripper 1.1 Local Buffer Overflow 27-08-2011
Free MP3 CD Ripper 1.1 DEP Bypass Exploit 27-08-2011
WordPress Super CAPTCHA plugin <= 2.2.4 SQL Injection Vulnerability 27-08-2011
WordPress Js-appointment plugin <= 1.5 SQL Injection Vulnerability 27-08-2011
WordPress Photoracer Plugin <= 1.0 Multiple Vulnerabilities 27-08-2011
WordPress oQey Headers plugin <= 0.3 SQL Injection Vulnerability 27-08-2011
WordPress Collision Testimonials plugin <= 3.0 SQL Injection Vulnerability 27-08-2011
Jcow Social Networking Script 4.2 <= 5.2 Arbitrary Code Execution 26-08-2011
Sunway Force Control SCADA 6.1 SP3 httpsrv.exe Exploit 26-08-2011
WordPress Photoracer plugin <= 1.0 SQL Injection Vulnerability 26-08-2011
RealVNC Authentication Bypass - [CVE: 2006-2369] 26-08-2011
Groovy Media Player 2.6.0 (.m3u) Local Buffer Overflow PoC 26-08-2011
WordPress SendIt plugin <= 1.5.9 Blind SQL Injection Vulnerability 25-08-2011
F-Secure Multiple Products ActiveX SEH Overwrite Vulnerability (Heap Spray) 24-08-2011
Help Desk Software 1.1g XSRF (add admin) Vulnerability 24-08-2011
ManageEngine ServiceDesk Plus 8.0 Multiple Stored XSS Vulnerabilities 23-08-2011
Adobe Photoshop CS5 GIF Remote Code Execution - [CVE: 2011-2131] 23-08-2011
Redlab CMS Multiple SQL Injection Vulnerabilities 22-08-2011
DV Cart Shopping Cart software SQL Injection Vulnerability 22-08-2011
Bonza Digital Cart Script SQL Injection Vulnerability 22-08-2011
Web Solutions Wcs2u SQL Injection Vulnerability 22-08-2011
WordPress MM Duplicate plugin <= 1.2 SQL Injection Vulnerability 22-08-2011
OneFileCMS v.1.1.1 Multiple Remote Vulnerabilities 21-08-2011
EasySiteEdit Remote File Inclusion Vulnerability 21-08-2011
Axis Commerce (E-Commerce System) Stored XSS 20-08-2011