BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Social Groupie (create_album.php) Remote File Upload Vulnerability12-12-2008
Social Groupie (group_index.php id) Remote SQL Injection Vulnerability12-12-2008
The Net Guys ASPired2Protect Database Disclosure Vulnerability12-12-2008
ASP-CMS 1.0 (index.asp cha) SQL Injection Vulnerability12-12-2008
SUMON <= 0.7.0 (chg.php host) Command Execution Vulnerability12-12-2008
MS Visual Basic ActiveX Controls mscomct2.ocx Buffer Overflow PoC12-12-2008
Xpoze 4.10 (home.html menu) Blind SQL Injection Vulnerability12-12-2008
Affiliate Software Java 4.0 (Auth Bypass) SQL Injection Vulnerability11-12-2008
Ad Management Java (Auth Bypass) SQL Injection Vulnerability11-12-2008
Banner Exchange Java (Auth Bypass) SQL Injection Vulnerability11-12-2008
Feed Cms 1.07.03.19b (lang) Local File Inclusion Vulnerability11-12-2008
eZ Publish 3.9.0-3.9.5-3.10.1 Command Execution Exploit (admin req)11-12-2008
PhpAddEdit 1.3 (Cookie) Login Bypass Vulnerability11-12-2008
evCal Events Calendar Database Disclosure Vulnerability11-12-2008
MyCal Personal Events Calendar (mycal.mdb) Database Disclosure Vuln11-12-2008
The Net Guys ASPired2Poll Remote Database Disclosure Vulnerability11-12-2008
PHP Support Tickets 2.2 Remote File Upload Vulnerability11-12-2008
CF_Forum Blind SQL Injection Vulnerability10-12-2008
CF SHOPKART 5.2.2 (SQL-DD) Multiple Remote Vulnerabilities10-12-2008
CF_Calendar (calendarevent.cfm) Remote SQL Injection Vulnerabilty10-12-2008
CF_Auction (forummessage) Blind SQL Injection Vulnerability10-12-2008
CFMBLOG (index.cfm categorynbr) Blind SQL Injection Vulnerability10-12-2008
MS Internet Explorer XML Parsing Remote Buffer Overflow Exploit 0day10-12-2008
MS Internet Explorer XML Parsing Buffer Overflow Exploit (vista) 0day10-12-2008
Butterfly Organizer 2.0.1 (view.php id) SQL Injection Vulnerability10-12-2008
MS Internet Explorer XML Parsing Buffer Overflow Exploit (vista)10-12-2008
Living Local 1.1 (XSS-RFU) Multiple Remote Vulnerabilities10-12-2008
Pro Chat Rooms 3.0.2 (XSS-CSRF) Multiple Vulnerabilities10-12-2008
eZ Publish < 3.9.5-3.10.1-4.0.1 Privilege Escalation Exploit10-12-2008
Webmaster Marketplace (member.php u) SQL Injection Vulnerability10-12-2008