BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
ISC BIND 9 Remote Dynamic Update Message Denial of Service PoC30-07-2009
Ultrize TimeSheet 1.2.2 Remote File Inclusion Vulnerability28-07-2009
Millenium MP3 Studio 1.0 .mpf File Local Stack Overflow Exploit #228-07-2009
WINMOD 1.4 (.lst) Local Stack Overflow Exploit XP SP3 (RET+SEH) #328-07-2009
TinyBrowser (TinyMCE Editor File browser) 1.41.6 Multiple Vulnerabilities28-07-2009
PaoBacheca Guestbook 2.1 (login_ok) Auth Bypass Vulnerability28-07-2009
PaoLiber 1.1 (login_ok) Authentication Bypass Vulnerability28-07-2009
Firebird SQL op_connect_request main listener shutdown Vulnerability28-07-2009
PaoLink 1.0 (login_ok) Authentication Bypass Vulnerability28-07-2009
PaoBacheca Guestbook 2.1 (login_ok) Authentication Bypass Vulnerability28-07-2009
MP3 Studio v1.0 (mpf File) Local BOF Exploit (SEH)28-07-2009
phpArcadeScript 4.0 (linkout.php id) SQL Injection Vulnerability28-07-2009
PunBB Reputation.php Mod <= 2.0.4 Blind SQL Injection Exploit28-07-2009
In-Portal 4.3.1 Arbitrary Shell Upload Vulnerability28-07-2009
MP3 Studio 1.10 (m3u File) Local Buffer Overflow Exploit (SEH)28-07-2009
MP3 Studio 1.0 (.mpf -.m3u File) Local Stack Overflow Exploit (SEH)28-07-2009
PHP Paid 4 Mail Script (paidbanner.php ID) SQL Injection Vulnerability28-07-2009
IXXO Cart! Standalone and Joomla Component SQL Injection Vuln27-07-2009
NcFTPd <= 2.8.5 Remote Jail Breakout Vulnerability27-07-2009
Magician Blog <= 1.0 (ids) Remote SQL Injection Vulnerability27-07-2009
Magician Blog <= 1.0 (Auth Bypass) SQL injection Vulnerability27-07-2009
SerWeb <= 2.1.0-dev1 2009-07-02 Multiple RFI Vulnerabilities27-07-2009
NcFTPd <= 2.8.5 Remote Jail Breakout Vulnerability (freebsd)27-07-2009
PunBB Automatic Image Upload <= 1.3.5 Remote SQL Injection Exploit27-07-2009
PunBB Automatic Image Upload <= 1.3.5 Delete Arbitrary File Exploit27-07-2009
Limny 1.01 (Auth Bypass) SQL Injection Vulnerability27-07-2009
IXXO Cart! Standalone and Joomla Component SQL Injection Vulnerability27-07-2009
MP3 Studio 1.0 (.mpf -.m3u File) Local Stack Overflow PoC27-07-2009
Inout Adserver (id) Remote SQL injection Vulnerability27-07-2009
Adobe Acrobat 9.1.2 NOS Local Privilege Escalation Exploit (py)27-07-2009