BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Ignition 1.3 (comment.php) Local File Inclusion Vulnerability 06-01-2011
Linux Kernel CAP_SYS_ADMIN to root Exploit 05-01-2011
Concrete CMS v5.4.1.1 XSS/Remote Code Execution Exploit 05-01-2011
PhpGedView <= 4.2.3 Local File Inclusion Vulnerability 05-01-2011
Nucleus v3.61 Multiple Remote File Include 05-01-2011
concrete5.4.1.1 Remote File Include 05-01-2011
S40 CMS v.0.4.1 Change Admin Passwd CSRF Exploit 04-01-2011
Music Animation Machine MIDI Player SEH BOF 04-01-2011
Wireshark ENTTEC DMX Data RLE Buffer Overflow Vulnerability 03-01-2011
Music Animation Machine MIDI Player Local Crash PoC 03-01-2011
" Hochgeladene Dateien File Upload Vulnerability "02-01-2011
YourTube v1.0 CSRF Vulnerability (Add User) 02-01-2011
GALLARIFIC PHP Photo Gallery Script (gallery.php) SQL Injection 02-01-2011
CoolPlayer 2.18 DEP Bypass - [CVE: 2008-3408] 02-01-2011
Amoeba CMS v1.01 multiple remote vulnerabilities 02-01-2011
MS10-073 Windows Class Handling Vulnerability - [CVE: 2010-2744] 02-01-2011
Tech Shop Technote 7 SQL Injection Vulnerability 02-01-2011
Sahana Agasti <= 0.6.4 SQL Injection Vulnerability 01-01-2011
Bywifi 2.8.1 Stack Buffer Overflow Exploit 01-01-2011
ChurchInfo <= 1.2.12 SQL Injection Vulnerability 01-01-2011
KLINK Sql Injection Vulnerability 01-01-2011
HP Photo Creative 2.x audio.Record.1 ActiveX Control Remote Stack Based Buffer Overflow 01-01-2011
w32-speaking-shellcode 31-12-2010
QuickPHP Web Server Arbitrary File Download 30-12-2010
WordPress 3.0.4 Stored XSS (via Editor role) 30-12-2010
Chilkat Software FTP2 ActiveX Component Remote Code Execution 30-12-2010
Ignition 1.3 Remote Code Execution Exploit 30-12-2010
Ignition 1.3 (page.php) Local File Inclusion Vulnerability 30-12-2010
LightNEasy 3.2.2 Multiple Vulnerabilities 30-12-2010
CA ARCserve D2D r15 Web Service Servlet Code Execution 30-12-2010