BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Pilot Group eTraining (news_read.php id) SQL Injection Vulnerability28-09-2008
MS Internet Explorer GDI+ Proof of Concept (MS08-052)28-09-2008
ZEELYRICS 2.0 (bannerclick.php adid) SQL Injection Vulnerability28-09-2008
ParsaWeb CMS (Search) Remote SQL Injection Vulnerability28-09-2008
Google Chrome 0.2.149.30 Window Object Suppressing DoS Exploit28-09-2008
ZEELYRICS 2.0 (bannerclick.php adid) Remote SQL Injection Vulnerability28-09-2008
PHP-Fusion Mod freshlinks (linkid) Remote SQL Injection Vuln28-09-2008
BbZL.PhP 0.92 Insecure Cookie Handling Vulnerability28-09-2008
MS Internet Explorer GDI+ Proof of Concept (MS08-0520)28-09-2008
Joomla Component imagebrowser <= 0.1.5 RC2 Directory Traversal Vuln28-09-2008
BbZL.PhP 0.92 (lien_2) Local Directory Traversal Vulnerability28-09-2008
Mozilla Firefox 3.0.3 User Interface Null Pointer Dereference Crash 28-09-2008
MS Windows Explorer Unspecified .ZIP File Denial of Service Exploit28-09-2008
Opera 9.52 Window Object Suppressing Remote Denial of Service Exploit28-09-2008
LnBlog <= 0.9.0 (plugin) Local File Inclusion Vulnerability27-09-2008
PlugSpace 0.1 (index.php navi) Local File Inclusion Vulnerability27-09-2008
Chilkat IMAP ActiveX 7.9 File Execution - IE DoS Exploit27-09-2008
Real Estate Manager (cat_id) Remote SQL injection vulnerability27-09-2008
CoAST 0.95 (sections_file) Remote File Inclusion Vulnerability27-09-2008
RPG.Board <= 0.0.8Beta2 Insecure Cookie Handling Vulnerability27-09-2008
Vbgooglemap Hotspot Edition 1.0.3 Remote SQL Injection Vulnerability27-09-2008
X7 Chat 2.0.5.1 (mini.php help_file) Local File Inclusion Vulnerability27-09-2008
Camera Life 2.6.2b4 Arbitrary File Upload Vulnerability27-09-2008
E-Uploader Pro <= 1.0 Multiple Remote SQL Injection Vulnerabilities27-09-2008
Joovili <= 3.0 Multiple SQL Injection Vulnerabilities27-09-2008
ASPapp KnowledgeBase (catid) Remote SQL Injection Vulnerability27-09-2008
X7 Chat <= 2.0.1A1 Local File Inclusion Vulnerability (original find)27-09-2008
Yoxel <= 1.23beta (itpm_estimate.php a) Remote Code Execution Vuln27-09-2008
PHP-Lance 1.52 (show.php catid) Remote SQL Injection Vulnerability27-09-2008
PowerPortal 2.0.13 (path) Local Directory Traversal Vulnerability27-09-2008