BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
OpenBSD <= 4.4 IP datagram Null Pointer Deref DoS Exploit14-04-2009
GuestCal 2.1 (index.php lang) Local File Inclusion Vulnerability14-04-2009
Aqua CMS (username) SQL Injection Vulnerability14-04-2009
Mini-stream RM-MP3 Converter 3.0.0.7 .m3u Stack Overflow Exploit13-04-2009
XEngineSoft PMS-MGS-NM-AMS 1.0 (Auth Bypass) SQL Injection Vulns13-04-2009
FreznoShop 1.3.0 (id) Remote SQL Injection Vulnerability13-04-2009
Mini-stream Ripper 3.0.1.1 .m3u Universal Stack Overflow Exploit13-04-2009
e107 Plugin userjournals_menu (blog.id) SQL Injection Vulnerability13-04-2009
ASP Product Catalog 1.0 (XSS-DD) Multiple Remote Exploits13-04-2009
ftpdmin 0.96 Arbitrary File Disclosure Exploit13-04-2009
BulletProof FTP Client 2009 (.bps) Buffer Overflow Exploit (SEH)13-04-2009
Steamcast (HTTP Request) Remote Buffer Overflow Exploit (SEH) [1]13-04-2009
Steamcast (HTTP Request) Remote Buffer Overflow Exploit (SEH) [2]13-04-2009
moziloCMS 1.11 (LFI-PD-XSS) Multiple Remote Vulnerabilities10-04-2009
Chance-i DiViS-Web DVR System ActiveX Control Heap Overflow PoC10-04-2009
Chance-i DiViS DVR System Web-server Directory Traversal Vulnerability10-04-2009
Cisco ASA-PIX Appliances Fail to Properly Check Fragmented TCP Packets10-04-2009
PHP-Agenda <= 2.2.5 Remote File Overwriting Vulnerabilities10-04-2009
Loggix Project 9.4.5 (refer_id) Blind SQL Injection Vulnerability10-04-2009
Xilisoft Video Converter Wizard 3 .CUE File Stack Buffer Overflow PoC10-04-2009
Redaxscript 0.2.0 (language) Local File Inclusion Vulnerability10-04-2009
w3bcms Gaestebuch 3.0.0 Blind SQL Injection Exploit10-04-2009
FunkyASP AD System 1.1 Remote Shell Upload Vulnerability10-04-2009
Geeklog <= 1.5.2 SEC_authenticate() SQL Injection Exploit09-04-2009
Exjune Guestbook v2 Remote Database Disclosure Exploit09-04-2009
SWF Opener 1.3 (.swf File) Off By One Buffer Overflow PoC09-04-2009
BackendCMS 5.0 (main.asp id) SQL Injection Vulnerability09-04-2009
Simbas CMS 2.0 (Auth Bypass) SQL Injection Vulnerability09-04-2009
XBMC 8.10 (HEAD Request) Remote Buffer Overflow Exploit (SEH)09-04-2009
WebFileExplorer 3.1 (Auth Bypass) SQL Injection Vulnerability09-04-2009