BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
HyperVM File Permissions Local Vulnerability25-08-2009
Traidnt UP 2.0 Remote SQL Injection Exploit18-08-2009
asaher pro 1.0.4 Remote Database Backup Vulnerability18-08-2009
VUPlayer <= 2.49 (.m3u File) Universal Buffer Overflow Exploit18-08-2009
ZTE ZXDSL 831 II Modem Arbitrary Configuration Access Vulnerability18-08-2009
Best Dating Script Arbitrary Shell Upload Vulnerability18-08-2009
Playlistmaker 1.51 (.m3u File) Local Buffer Overflow Exploit (SEH)18-08-2009
KOL Player 1.0 (.mp3 File) Local Buffer Overflow PoC18-08-2009
ProSysInfo TFTP Server TFTPDWIN 0.4.2 Remote BOF Exploit18-08-2009
Ultimate Fade-in slideshow 1.51 Shell Upload Vulnerability18-08-2009
PHP Email Manager (remove.php ID) SQL Injection Vulnerability18-08-2009
CBAuthority - ClickBank Affiliate Management SQL Injection Vulnerability18-08-2009
2WIRE Gateway (Auth Bypass & Password Reset) Vulnerabilities #218-08-2009
Autonomous LAN party <= 0.98.3 Remote File Inclusion Vulnerability18-08-2009
E Cms <= 1.0 (index.php s) Remote SQL Injection Vulnerability18-08-2009
Infinity <= 2.x.x options[style_dir] Local File Disclosure Vulnerability18-08-2009
Joomla Component MisterEstate Blind SQL Injection Exploit18-08-2009
Fotoshow PRO (category) Remote SQL Injection Vulnerability18-08-2009
phpfreeBB 1.0 Remote BLIND SQL Injection Vulnerability18-08-2009
ZTE ZXDSL 831 II Modem Arbitrary Add Admin User Vulnerability18-08-2009
broid 1.0 Beta 3a (.mp3 File) Local Buffer Overflow PoC18-08-2009
Xenorate Media Player 2.6.0.0 (.xpl) Universal Local Buffer Exploit (SEH)18-08-2009
Dreampics Builder (exhibition_id) Remote SQL Injection Vulnerability18-08-2009
Arcadem Pro 2.8 (article) Blind SQL Injection Exploit18-08-2009
Videos Broadcast Yourself V2 (UploadID) SQL Injection Vuln18-08-2009
Safari 4.0.2 (WebKit Parsing of Floating Point Numbers) BOF PoC18-08-2009
MS Internet Explorer (Javascript SetAttribute) Remote Crash Exploit18-08-2009
AJ Auction Pro OOPD 2.x (store.php id) SQL Injection Exploit18-08-2009
SPIP < 2.0.9 Arbitrary Copy All Passwords to XML File Remote Exploit18-08-2009
TheGreenBow VPN Client tgbvpn.sys Local DoS Exploit18-08-2009