BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
aflog 1.01 Multiple Insecure Cookie Handling Vulnerabilies23-10-2008
MindDezign Photo Gallery 2.2 (index.php id) SQL Injection Vulnerability23-10-2008
MindDezign Photo Gallery 2.2 Arbitrary Add Admin Exploit23-10-2008
Joomla Component RWCards 3.0.11 Local File Inclusion Vulnerability23-10-2008
Opera 9.52-9.60 Stored Cross Site Scripting Code Exec PoC23-10-2008
SilverSHielD 1.0.2.34 (opendir) Denial of Service Exploit23-10-2008
CSPartner 1.0 (Delete All Users-SQL Injection) Remote Exploit23-10-2008
txtshop 1.0b (language) Local File Inclusion Vulnerability (win only)23-10-2008
MS Windows Server Service Code Execution PoC (MS08-067)23-10-2008
SiteEngine 5.x Multiple Remote Vulnerabilities23-10-2008
VLC 0.9.4 .TY File Buffer Overflow Exploit (SEH)23-10-2008
Joomla Component Daily Message 1.0.3 (id) SQL Injection Vuln22-10-2008
freeSSHd 1.2.1 sftp rename Remote Crash Exploit22-10-2008
Opera <= 9.60 Stored Cross Site Scripting Vulnerability22-10-2008
DorsaCms (ShowPage.aspx) Remote SQL Injection Vulnerability22-10-2008
freeSSHd 1.2.1 sftp realpath Remote Buffer Overflow PoC (auth)22-10-2008
YDC (kdlist.php cat) Remote SQL Injection Vulnerability22-10-2008
LibSPF2 < 1.2.8 DNS TXT Record Parsing Bug Heap Overflow PoC22-10-2008
GoodTech SSH (SSH_FXP_OPEN) Remote Buffer Overflow Exploit22-10-2008
LoudBlog <= 0.8.0a (ajax.php) SQL Injection Vulnerability (auth)22-10-2008
phpcrs <= 2.06 (importFunction) Local File Inclusion Vulnerability22-10-2008
Joomla Component ionFiles 4.4.2 File Disclosure Vulnerability22-10-2008
Iamma Simple Gallery 1.0-2.0 Arbitrary File Upload Vulnerability22-10-2008
LightBlog 9.8 (GET,POST,COOKIE) Multiple LFI Vulnerabilities21-10-2008
Limbo CMS (Private Messaging Component) SQL Injection Vulnerability21-10-2008
ShopMaker 1.0 (product.php id) Remote SQL Injection Vulnerability21-10-2008
VLC Media Player TY File Stack Based Buffer Overflow Exploit21-10-2008
Wysi Wiki Wyg 1.0 (LFI-XSS-PHPInfo) Remote Vulnerabilities20-10-2008
XOOPS Module makale Remote SQL Injection Vulnerability20-10-2008
Joomla Component ds-syndicate (feed_id) SQL Injection Vulnerability20-10-2008