BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Easy Music Player 1.0.0.2 (wav) Universal Local Buffer Exploit (SEH)12-08-2009
Easy Music Player 1.0.0.2 (wav) Universal Local Buffer Exploit (SEH) #211-08-2009
OCS Inventory NG 1.2.1 (systemid) SQL Injection Vulnerability11-08-2009
MS Windows 2003 (EOT File) BSOD Crash Exploit11-08-2009
Embedthis Appweb 3.0b.2-4 Remote Buffer Overflow PoC11-08-2009
Easy Music Player 1.0.0.2 (wav) Universal Local Buffer Exploit (SEH)11-08-2009
Joomla Component idoblog 1.1b30 (com_idoblog) SQL Injection Vuln11-08-2009
Wordpress <= 2.8.3 Remote Admin Reset Password Vulnerability11-08-2009
MediaCoder 0.7.1.4490 (.lst-.m3u) Universal Buffer Overflow Exploit (SEH)10-08-2009
Joomla Component Kunena Forums (com_kunena) bSQL Injection Exploit10-08-2009
Mini-CMS 1.0.1 (page.php id) SQL Injection Vulnerability10-08-2009
CMS Made Simple <= 1.6.2 Local File Disclosure Vulnerability10-08-2009
SmilieScript <= 1.0 (Auth Bypass) SQL Injection Vulnerability10-08-2009
Papoo CMS 3.7.3 Authenticated Arbitrary Code Execution Vulnerability10-08-2009
Linux Kernel 2.6.x SCTP FWD Memory Corruption Remote Exploit10-08-2009
MediaCoder 0.7.1.4490 (.lst-.m3u) Universal BOF Exploit (SEH)10-08-2009
PhotoPost PHP 3.3.1 (XSS-bSQL) Multiple Remote Vulnerabilities07-08-2009
PHPCityPortal (Auth Bypass) Remote SQL Injection Vulnerability07-08-2009
Facil Helpdesk (RFI-LFI-XSS) Multiples Remote Vulnerabilities07-08-2009
IsolSoft Support Center 2.5 (RFI-LFI-XSS) Multiples Vulnerabilities07-08-2009
Joomla Component com_pms 2.0.4 (Ignore-List) SQL Injection Exploit07-08-2009
Logoshows BBS 2.0 (Auth Bypass) SQL Injection Vulnerability07-08-2009
Logoshows BBS 2.0 (DD-ICH) Multiple Remote Vulnerabilities07-08-2009
Spiceworks 3.6 Accept Parameter Overflow Crash Exploit07-08-2009
FoxPlayer 1.1.0 (m3u File) Local Buffer Overflow PoC07-08-2009
Arab Portal 2.2 (Auth Bypass) Blind SQL Injection Exploit07-08-2009
Alwasel 1.5 Multiple Remote SQL Injection Vulnerabilities07-08-2009
PHotoLa Gallery <= 1.0 (Auth Bypass) SQL Injection Vulnerability07-08-2009
Steam v.54-894 Local Privilege Escalation Vulnerability07-08-2009
Banner Exchange Script 1.0 (targetid) Blind SQL Injection Vuln07-08-2009