BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Alpha - execve() Shellcode (112 bytes)01-01-2009
Alpha - /bin/sh Shellcode (80 bytes)01-01-2009
Linux/SuperH (sh4) - setuid(0) + execve("/bin/sh", NULL, NULL) Shellcode (27 bytes)01-01-2009
Linux/StrongARM - Bind TCP /bin/sh Shell Shellcode (203 bytes)01-01-2009
Linux/StrongARM - execve(/bin/sh) Shellcode (47 bytes)01-01-2009
Linux/StrongARM - setuid() Shellcode (20 bytes)01-01-2009
Android/ARM - Reverse TCP /system/bin/sh Shell (10.0.2.2:0x3412/TCP) Shellcode (79 bytes)01-01-2009
OSX/PPC - execve(/bin/sh,,NULL) + exit() Shellcode (72 bytes)01-01-2009
OSX/PPC - execve(/bin/sh) Shellcode01-01-2009
OSX/PPC - Bind TCP (8000/TCP) Shell + OSXPPCLongXOR Encoded Shellcode (300 bytes)01-01-2009
OSX/PPC - Stager Sock Reverse Shellcode01-01-2009
OSX/PPC - Stager Sock Find Shellcode01-01-2009
OSX/PPC - Stager Sock Find MSG_PEEK Shellcode01-01-2009
OSX/PPC - Reverse TCP Shell (/bin/csh) Shellcode01-01-2009
OSX/PPC - Remote findsock by recv() Key Shellcode01-01-2009
Linux/x86 - execve(/bin/ash) + exit Shellcode (34 bytes)01-01-2009
Linux/x86 - execve(/bin/sh /tmp/p00p) Shellcode (70 bytes)01-01-2009
2Capsule (sticker.php id) Remote SQL Injection Vulnerability01-01-2009
Nokia S60 SMS-MMS (Curse of Silence) Denial of Service Vulnerability01-01-2009
DDL-Speed Script (acp-backup) Admin Backup Bypass Vulnerability01-01-2009
Megacubo 5.0.7 (mega:--) Remote File Download and Execute Exploit01-01-2009
ViArt Shopping Cart 3.5 Multiple Remote Vulnerabilities01-01-2009
w3blabor CMS <= 3.3.0 (Admin Bypass) SQL Injection Vulnerability01-01-2009
PowerNews 2.5.4 (news.php newsid) SQL Injection Vulnerability01-01-2009
PowerClan 1.14a (Auth Bypass) SQL Injection Vulnerability01-01-2009
Konqueror <= 4.1 XSS - Remote Crash Vulnerabilities01-01-2009
Elecard MPEG Player 5.5 (.m3u File) Stack Buffer Overflow PoC01-01-2009
Memberkit 1.0 Remote PHP File Upload Vulnerability01-01-2009
phpScribe 0.9 (user.cfg) Remote Config Disclosure Vulnerability01-01-2009
EggBlog 3.1.10 Change Admin Pass CSRF Vulnerability01-01-2009