BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
BloofoxCMS Registration Plugin SQL Injection Vulnerability 27-10-2010
Energine CMS SQL Injection Vulnerability 27-10-2010
MyBB v1.6 Full Path Disclosure Vulnerability 27-10-2010
BloofoxCMS v0.3.5 Information Disclosure Vulnerabilities 27-10-2010
Zomplog 3.9 Multiple XSS & XSRF Vulnerabilities 27-10-2010
DZCP (deV!Lz Clanportal) v1.5.4 Local File Inclusion Vulnerability 27-10-2010
phpLiterAdmin v1.0 RC1 Authentication Bypass Vulnerability 27-10-2010
DBHcms v1.1.4 (dbhcms_user and searchString) SQL Injection Vulnerability 27-10-2010
Novaboard v1.1.4 Local File Inclusion Vulnerability 27-10-2010
Bigace_2.7.3 CSRF Change Admin Password POC 27-10-2010
Apache 2.2 (Windows) Local Denial of Service 27-10-2010
MyCart 2.0 Multiple Remote Vulnerabilities 27-10-2010
NitroSecurity ESM v8.4.0a Remote Code Execution 26-10-2010
ARM ifconfig eth0 and Assign Address 26-10-2010
ARM Loader Port 0x1337 26-10-2010
ARM Bind Connect UDP Port 68 26-10-2010
ARM Bindshell port 0x1337 26-10-2010
Winamp 5.5.8.2985 (in_mod plugin) Stack Overflow (Friendly Version) 25-10-2010
Jamb CSRF Arbitrary Add a Post 25-10-2010
Plesk Small Business Manager 10.2.0 and Site Editor Multiple Vulnerabilities 25-10-2010
Pulse Pro 1.4.3 Persistent XSS Vulnerability 24-10-2010
HP Data Protector Media Operations 6.11 HTTP Server Remote Integer Overflow DoS 24-10-2010
DBHcms 1.1.4 SQL Injection Vulnerability 24-10-2010
Web Design:Faruk GÜNEŞ XSS Vulnerability‏23-10-2010
AnyDVD <= 6.7.1.0 Denial Of Service 23-10-2010
RarmaRadio v2.52 (.m3u) Denial of service vulnerability 23-10-2010
Spider Player 2.4.5 Denial of Service Vulnerability 22-10-2010
Altova DatabaseSpy 2011 Project File Handling Buffer Overflow Vulnerability 22-10-2010
Squirrelcart PRO 3.0.0 Blind SQL Injection Vulnerability 22-10-2010
GNU C library dynamic linker LD_AUDIT arbitrary DSO load Vulnerability - [CVE: 2010-3856] 22-10-2010