BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
NewLife Blogger <= 3.0 Insecure Cookie Handling - SQL Injection Vuln12-10-2008
My PHP Indexer 1.0 (index.php) Local File Download Vulnerability12-10-2008
LokiCMS <= 0.3.4 (index.php page) Arbitrary Check File Exploit12-10-2008
Real Estate Scripts 2008 (index.php cat) SQL Injection Vulnerability12-10-2008
Absolute Poll Manager XE 4.1 (xlacomments.asp) SQL Injection Vuln11-10-2008
Joomla Component ownbiblio 1.5.3 (catid) SQL Injection Vulnerability11-10-2008
Absolute Poll Manager XE 4.1 (xlacomments.php) SQL Injection Vuln11-10-2008
Absolute Poll Manager XE 4.1 (xlacomments.php) SQL Injection Vulnerability11-10-2008
MunzurSoft Wep Portal W3 (kat) SQL Injection Vulnerability10-10-2008
Joomla Component mad4joomla SQL Injection Vulnerability10-10-2008
Nokia Mini Map Browser (array sort) Silent Crash Vulnerability10-10-2008
Easynet4u Forum Host (forum.php) SQL Injection Vulnerability10-10-2008
Joomla Component Ignite Gallery 0.8.3 SQL Injection Vulnerability10-10-2008
Easynet4u faq Host (faq.php faq) Remote SQL Injection Vulnerability10-10-2008
Ayco Okul Portali (linkid) SQL Injection Vulnerability (tr)10-10-2008
Konqueror 3.5.9 (load) Remote Crash Vulnerability10-10-2008
NoticeWare E-mail Server 5.1.2.2 (POP3) Pre-Auth DoS Exploit10-10-2008
SlimCMS <= 1.0.0 (redirect.php) Privilege Escalation Exploit10-10-2008
Easynet4u Link Host (cat_id) SQL Injection Vulnerability10-10-2008
Kusaba <= 1.0.4 Remote Code Execution Exploit #209-10-2008
ScriptsEz Mini Hosting Panel (members.php) LFI Vulnerability09-10-2008
IranMC Arad Center (news.php id) SQL Injection Vulnerability09-10-2008
Camera Life 2.6.2b4 (SQL-XSS) Multiple Remote Vulnerabilities09-10-2008
Gforge <= 4.5.19 Multiple Remote SQL Injection Vulnerabilities09-10-2008
Joomla Component Joomtracker 1.01 Remote SQL injection Vulnerability09-10-2008
Gforge <= 4.6 rc1 (skill_edit) SQL Injection Vulnerability09-10-2008
Kusaba <= 1.0.4 Remote Code Execution Exploit09-10-2008
WinFTP 2.3.0 (PASV mode) Remote Denial of Service Exploit09-10-2008
ScriptsEz Easy Image Downloader Local File Download Vulnerability09-10-2008
Stash 1.0.3 (SQL) User Credentials Disclosure Exploit09-10-2008