BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
QuickPHP Web Server 1.9.1 Directory Traversal 29-12-2010
httpdASM 0.92 Directory Traversal 29-12-2010
TYPSoft FTP Server (v 1.10) RETR CMD Denial Of Service - [CVE: 2005-3294] 29-12-2010
Wordpress 3.0.3 Stored XSS (IE7,6 NS8.1) 29-12-2010
Discovery TorrentTrader 2.6 - Multiple Vulnerabilities 29-12-2010
TYPO3 Unauthenticated Arbitrary File Retrieval - [CVE: 2010-3714] 29-12-2010
Digital Music Pad v8.2.3.4.8 (.pls) SEH Overflow 29-12-2010
Siteframe 3.2.3 (user.php) SQL Injection Vulnerability 29-12-2010
KaiBB 1.0.1 Multiple Vulnerabilities 29-12-2010
PiXie CMS v1.04 <= Multiple CSRF Vulnerabilities 29-12-2010
PHP-AddressBook v6.2.4 (group.php) SQL Injection Vulnerability 29-12-2010
DD-WRT Information Disclosure Vulnerability 29-12-2010
ardeaCore_v2.25 PHP Framework Remote File Inclusion 29-12-2010
News Script PHP Pro (fckeditor) File Upload Vulnerability 29-12-2010
IrfanView 4.27 - JP2000.dll plugin DoS 29-12-2010
Microsoft Windows Fax Services Cover Page Editor (.cov) Memory Corruption 28-12-2010
OpenClassifieds 1.7.0.3 Chained: Captcha Bypass->SQLi->Persistent XSS on Frontpage 28-12-2010
Web@all <= 1.1 Remote Admin Settings Change 27-12-2010
OpenEMR v3.2.0 SQL Injection and XSS 27-12-2010
pecio CMS v2.0.5 <= CSRF Add Admin 27-12-2010
Kolibri v2.0 Buffer Overflow RET + SEH exploit (HEAD) 26-12-2010
Interact 2.4.1 SQL Injection Vulnerability 26-12-2010
LoveCMS 1.6.2 Final Multiple Local File Inclusion Vulnerabilities 26-12-2010
Social Engine 4.x (Music Plugin) Arbitrary File Upload Vulnerability 26-12-2010
Pligg 1.1.3 (cloud.php) SQL injection Vulnerability 26-12-2010
Vacation Rental Script v4.0 XSRF Vulnerability 26-12-2010
Joomla Component (com_idoblog) SQL Injection Vulnerability 26-12-2010
Traidnt Up 3.0 CSRF Vulnerability 26-12-2010
OpenAuto 1.6.3 Multiple Vulnerabilities 26-12-2010
[D] PHP Component -Search- Local File Inclusion Vulnerability [z]25-12-2010