BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Amaya Web Editor XML and HTML parser Vulnerabilities28-01-2009
Google Chrome 1.0.154.43 ClickJacking Vulnerability (2009-01-23)28-01-2009
Pixie CMS 1.0 Multiple Local File Inclusion Vulnerabilities27-01-2009
Flax Article Manager 1.1 Remote PHP Script Upload Vulnerability27-01-2009
Max.Blog <= 1.0.6 (show_post.php) SQL Injection Vulnerability27-01-2009
Zinf Audio Player 2.2.1 (PLS File) Stack Overflow PoC27-01-2009
Zinf Audio Player 2.2.1 (PLS File) Local Buffer Overflow Exploit27-01-2009
Zinf Audio Player 2.2.1 (M3U FILE) Local Heap Overflow PoC27-01-2009
Zinf Audio Player 2.2.1 (gqmpeg File) Buffer Overflow PoC27-01-2009
Groone's GLink Organizer (index.php cat) SQL Injection Vulnerability26-01-2009
SiteXS <= 0.1.1 (type) Local File Inclusion Exploit26-01-2009
ClickAuction (Auth Bypass) Remote SQL Injection Vulnerability26-01-2009
Joomla com_flashmagazinedeluxe (mag_id) SQL Injection Vulnerability26-01-2009
NCTVideoStudio ActiveX DLLs Version 1.6 Remote Heap Overflow PoC26-01-2009
OpenX 2.6.3 (MAX_type) Local File Inclusion Vulnerability26-01-2009
PHP-CMS 1 (username) Blind SQL Injection Exploit26-01-2009
Wazzum Dating Software (userid) SQL Injection Vulnerability26-01-2009
Simple Machines Forum <= 1.1.7 XSRF-XSS-Package Upload Vuln26-01-2009
ITLPoll 2.7 Stable2 (index.php id) Blind SQL Injection Exploit26-01-2009
FlexCell Grid Control 5.6.9 Remote File Overwrite Exploit26-01-2009
MW6 Barcode ActiveX (Barcode.dll) Reamote Heap Overflow PoC26-01-2009
HtmlCapture ActiveX Control 2.0 Remote Arbitrary File Overwrite Exploit26-01-2009
NCTVideoStudio ActiveX DLLs 1.6 Insecure Method File Creation Exploit26-01-2009
E-ShopSystem Auth Bypass - SQL Injection Multiple Vulnerabilities26-01-2009
Script Toko Online 5.01 (shop_display_products.php) SQL Injection Vuln26-01-2009
SHOP-INET v4 (show_cat2.php grid) SQL Injection Vulnerability26-01-2009
WinFTP 2.3.0 (LIST) Remote Buffer Overflow Exploit (post-auth)26-01-2009
EleCard MPEG PLAYER (.m3u file) Local Stack Overflow Exploit25-01-2009
MediaMonkey 3.0.6 (.m3u file) Local Buffer Overflow PoC25-01-2009
PostgreSQL 8.2-8.3-8.4 UDF for Command Execution25-01-2009