BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Microsoft IIS 6.0 WebDAV Remote Authentication Bypass Vulnerability15-05-2009
2daybiz Custom T-shirt Design (SQL-XSS) Multiple Remote Vulns15-05-2009
Rama CMS <= 0.9.8 (download.php file) File Disclosure Vulnerability15-05-2009
Audioactive Player 1.93b (.m3u) Local Buffer Overflow Exploit (SEH)15-05-2009
Audioactive Player 1.93b (.m3u) Local Buffer Overflow Exploit15-05-2009
Harland Scripts 11 Products Remote Command Execution Exploit15-05-2009
D-Link Products Captcha Bypass Vulnerability15-05-2009
Joomla Component ArtForms 2.1 b7 Remote File Inclusion Vulnerabilities15-05-2009
Eggdrop-Windrop 1.6.19 ctcpbuf Remote Crash Vulnerability15-05-2009
MRCGIGUY Top Sites 1.0.0 Insecure Cookie Handling Vuln14-05-2009
MRCGIGUY SimpLISTic SQL 2.0.0 Insecure Cookie Handling Vuln14-05-2009
MRCGIGUY Amazon Directory 1.0-2.0 Insecure Cookie Handling Vuln14-05-2009
MRCGIGUY Message Box 1.0 Insecure Cookie Handling Vuln14-05-2009
MRCGIGUY The Ticket System 2.0 Insecure Cookie Handling Vuln14-05-2009
MRCGIGUY Ultimate Profit Portal 1.0.1 Insecure Cookie Handling Vuln14-05-2009
2daybiz Business Community Script Multiple Remote Vulnerabilities14-05-2009
Easy Scripts Answer and Question Script Multiple Vulnerabilities14-05-2009
2daybiz Template Monster Clone (edituser.php) Change Pass Exploit14-05-2009
Shutter 0.1.1 Multiple Remote SQL Injection Vulnerabilities14-05-2009
beLive v.0.2.3 (arch.php arch) Local File Inclusion Vulnerability14-05-2009
StrawBerry 1.1.1 LFI - Remote Command Execution Exploit14-05-2009
MRCGIGUY ClickBank Directory 1.0.1 Insecure Cookie Handling Vuln14-05-2009
Submitter Script (Auth Bypass) SQL Injection Vulnerability14-05-2009
MRCGIGUY Hot Links SQL 3.2.0 Insecure Cookie Handling Vuln14-05-2009
Linux Kernel 2.6.29 ptrace_attach() Local Root Race Condition Exploit14-05-2009
DigiMode Maya 1.0.2 (.m3u - .m3l files) Buffer Overflow PoCs14-05-2009
Ascad Networks 5 Products Insecure Cookie Handling Vulnerability14-05-2009
My Game Script 2.0 (Auth Bypass) SQL Injection Vulnerability14-05-2009
MaxCMS 2.0 (m_username) Arbitrary Create Admin Exploit13-05-2009
Family Connections CMS <= 1.9 (member) SQL Injection Exploit13-05-2009