BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
WBB Plugin rGallery 1.09 (itemID) Blind SQL Injection Exploit20-10-2008
Dart Communications PowerTCP FTP module Remote BOF Exploit20-10-2008
Joomla Component Nice Talk (tagid) SQL Injection Vulnerability20-10-2008
yappa-ng <= 2.3.3-beta0 (album) Local File Inclusion Vulnerability19-10-2008
WBB Plugin rGallery 1.09 (itemID) Blind SQL Injection Exploit19-10-2008
Vivvo CMS <= 3.4 Multiple Vulnerabilities Destroyer Exploit19-10-2008
e107 <= 0.7.13 (user_hidden_fields) Remote Blind SQL Injection Exploit19-10-2008
Solaris 9 [UltraSPARC] sadmind Remote Root Exploit19-10-2008
BitTorrent 6.0.3 .torrent File Stack Buffer Overflow Exploit19-10-2008
Fast Click SQL 1.1.7 Lite (init.php) Remote File Inclusion Vulnerability19-10-2008
e107 <= 0.7.13 (usersettings.php) Blind SQL Injection Exploit19-10-2008
XOOPS Module GesGaleri (kategorino) Remote SQL Injection Exploit18-10-2008
zeeproperty (adid) Remote SQL Injection Vulnerability18-10-2008
phpFastNews 1.0.0 Insecure Cookie Handling Vulnerability18-10-2008
miniBloggie 1.0 (del.php) Remote Blind SQL Injection Exploit18-10-2008
Meeting Room Booking System (MRBS) < 1.4 SQL Injection Exploit18-10-2008
Nuke ET <= 3.4 (fckeditor) Remote Arbitrary File Upload Exploit18-10-2008
PHP Easy Downloader <= 1.5 Remote File Creation Exploit18-10-2008
Wordpress Plugin st_newsletter (stnl_iframe.php) SQL Injection Vuln17-10-2008
Hummingbird Deployment Wizard 2008 ActiveX File Execution(2)17-10-2008
Hummingbird Deployment Wizard 2008 Registry Values Creation-Change17-10-2008
Hummingbird Deployment Wizard 2008 ActiveX Command Execution17-10-2008
Solaris 9 PortBind XDR-DECODE taddr2uaddr() Remote DoS Exploit17-10-2008
IP Reg <= 0.4 Multiple Remote SQL Injection Vulnerabilities16-10-2008
Kure 0.6.3 (index.php post,doc) Local File Inclusion Vulnerability16-10-2008
PokerMax Poker League Insecure Cookie Handling Vulnerability16-10-2008
Hummingbird <= 13.0 ActiveX Remote Buffer Overflow PoC16-10-2008
Mosaic Commerce (category.php cid) SQL Injection Vulnerability16-10-2008
CafeEngine Multiple Remote SQL Injection Vulnerabilities16-10-2008
Mic_blog 0.0.3 (SQL Injection-Privilege Escalation) Remote Exploit16-10-2008