BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
mBlogger v1.0.04 (viewpost.php) SQL Injection Exploit 01-09-2010
Web-Ideas Web Shop Standard SQL Injection Vulnerability 31-08-2010
Linux/ARM - execve("/bin/sh",NULL,0) Shellcode (31 bytes)31-08-2010
Joomla Component (com_jefaqpro) Multiple Blind SQL Injection Vulnerabilities 31-08-2010
Seagull 0.6.7 Remote File Inclusion Vulnerability 30-08-2010
Mereo v1.9.2 Remote HTTP Server Denial Of Service Vulnerability 30-08-2010
Apple QuickTime "_Marshaled_pUnk" Backdoor Param Client-Side Arbitrary Code Execution 30-08-2010
Joomla PicSell Component (com_picsell) Local File Disclosure Vulnerability 30-08-2010
Seagull v0.6.7 SQL Injection Vulnerability 29-08-2010
GuestBookPlus HTML Injection & Bypass Comments Limit 29-08-2010
CF Image Hosting Script v1.3.8 Remote File Inclusion 29-08-2010
vBulletin 3.8.4 & 3.8.5 Registration Bypass Vulnerability 29-08-2010
SnackAmp 3.1.2 Malicious WAV Buffer Overflow Vulnerability (POC) 29-08-2010
Max's Guestbook (HTML Injection/XSS) Multiple Vulnerabilities 29-08-2010
SnackAmp 3.1.2 Malicious SMP Buffer Overflow Vulnerability (SEH) 29-08-2010
nginx v0.6.38 Heap Corruption Exploit - [CVE: 2009-2629] 29-08-2010
Multi-lingual E-Commerce System 0.2 Multiple Remote File Inclusion Vulnerabilities 29-08-2010
XOOPS 2.0.14 (article.php) SQL Injection Vulnerability 28-08-2010
CF Image Hosting Script 1.3 (settings.cdb) Information Disclosure Vulnerability 28-08-2010
Blogman v0.7.1 (profile.php) SQL Injection Exploit 28-08-2010
Shop Creator 4.0 SQL Injection Vulnerability 28-08-2010
DiY-CMS 1.0 Multiple Remote File Inclusion Vulnerabilities 28-08-2010
Textpattern CMS 4.2.0 Remote File Inclusion Vulnerability 28-08-2010
Leadtools ActiveX Raster Twain v16.5 (LtocxTwainu.dll) Buffer Overflow Vulnerability 28-08-2010
GaleriaSHQIP SQL Injection Vulnerability 28-08-2010
Windows Mail 6.0.6000.16386 (wab32res.dll) DLL Hijacking Exploit 27-08-2010
pecio CMS v2.0.5 Multiple Remote File Inclusion Vulnerabilities 27-08-2010
Linux Kernel < 2.6.36-rc1 CAN BCM Privilege Escalation Exploit - [CVE: 2010-2959] 27-08-2010
iGaming CMS Multiple SQL Injection Vulnerabilities 27-08-2010
McAfee LinuxShield <= 1.5.1 Local/Remote Root Code Execution 27-08-2010