BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
HP Data Protector Remote Root Shell for Linux 10-08-2011
A-PDF All to MP3 v2.3.0 Universal DEP Bypass Exploit 10-08-2011
Mozilla Firefox 3.6.16 mChannel use after free vulnerability - [CVE: 2011-0065] 10-08-2011
TNR Enhanced Joomla Search <= SQL Injection Vulnerability 09-08-2011
iPhone/iPad Phone Drive 1.1.1 Directory Traversal 09-08-2011
FCKeditor all versian Arbitrary File Upload Vulnerability 09-08-2011
Excel SLYK Format Parsing Buffer Overrun Vulnerability PoC - [CVE: 2011-1276] 09-08-2011
Acoustica Mixcraft v1.00 Local Crash 09-08-2011
Lasernet CMS Version 1.5 SQL Injection Vulnerability 09-08-2011
BlogPHP v2 Persistent XSS Vulnerability 09-08-2011
XpressEngine 1.4.5.7 Persistent XSS Vulnerability 08-08-2011
LiteServe 2.81 PASV Command Denial of Service 08-08-2011
Simple Machines forum (SMF) 2.0 session hijacking 08-08-2011
HP JetDirect PJL Query Execution - [CVE: 2010-4107] 07-08-2011
HP JetDirect PJL Interface Universal Path Traversal - [CVE: 2010-4107] 07-08-2011
Free CD to MP3 Converter 3.1 Universal DEP Bypass Exploit 07-08-2011
ATutor 2.0.2 Multiple Vulnerabilities 06-08-2011
AChecker 1.2 Multiple Error-Based SQL Injection vulnerabilities 06-08-2011
AContent 1.1 Multiple Vulnerabilities 06-08-2011
Media Library Categories <= 1.0.6 SQL Injection Vulnerability 06-08-2011
UPM Polls <= 1.0.3 SQL Injection Vulnerability 06-08-2011
PXE exploit server 06-08-2011
Cart Software Multiple Vulnerabilities 06-08-2011
ThreeDify Designer 5.0.2 Multiple Vulnerabilities 05-08-2011
CiscoKits 1.0 TFTP Server Directory Traversal Vulnerability 05-08-2011
CiscoKits 1.0 TFTP Server DoS (write command) 05-08-2011
ProPlayer plugin <= 4.7.7 SQL Injection Vulnerability 05-08-2011
Sun/Oracle GlassFish Server Authenticated Code Execution - [CVE: 2011-0807] 05-08-2011
Social Slider <= 5.6.5 SQL Injection Vulnerability 05-08-2011
WP E-commerce plugin <= 3.8.4 SQL Injection Exploit 05-08-2011