BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
MyCard 1.0.2 (gallery.php id) Remote SQL Injection Vulnerability27-09-2008
MS Windows GDI+ (.ico File) Remote Division By Zero Exploit26-09-2008
The Gemini Portal (lang) Remote File Inclusion Vulnerabilities26-09-2008
The Gemini Portal <= 4.7 Insecure Cookie Handling Vulnerability26-09-2008
openEngine 2.0 beta2 Remote File Inclusion Vulnerability26-09-2008
Crux Gallery <= 1.32 Insecure Cookie Handling Vulnerability26-09-2008
Ultimate Webboard 3.00 (Category) SQL Injection Vulnerability26-09-2008
212cafe Board 0.07 (view.php qID) SQL Injection Vulnerability26-09-2008
PromoteWeb MySQL (go.php id) Remote SQL Injection Vulnerability26-09-2008
Libra PHP File Manager <= 1.18 Insecure Cookie Handling Vulnerability26-09-2008
WinFTP Server 2.3.0 (NLST) Denial of Service Exploit26-09-2008
Atomic Photo Album 1.1.0pre4 Insecure Cookie Handling Vulnerability26-09-2008
Windows Mobile 6.0 Device long name Remote Reboot Exploit 26-09-2008
Esqlanelapse Software Project <= 2.6.2 Insecure Cookie Handling Vuln26-09-2008
Atomic Photo Album 1.1.0pre4 Blind SQL Injection Exploit26-09-2008
barcodegen <= 2.0.0 (class_dir) Remote File Inclusion Vulnerability26-09-2008
RPG.Board <= 0.0.8Beta2 (showtopic) SQL Injection Vulnerability26-09-2008
K-Lite Mega Codec Pack 3.5.7.0 Local Windows Explorer DoS PoC25-09-2008
Libra PHP File Manager <= 1.18 Local File Inclusion Exploit25-09-2008
PHP infoBoard v.7 Plus Multiple Remote Vulnerabilities25-09-2008
PHP infoBoard v.7 Plus Insecure Cookie Handling Vulnerability25-09-2008
K-Lite Mega Codec Pack 3.5.7.0 Local Windows Explorer DoS PoC.25-09-2008
phpOCS <= 0.1-beta3 (index.php act) Local File Inclusion Vulnerability25-09-2008
Vikingboard <= 0.2 Beta (task) Local File Inclusion Vulnerability25-09-2008
AJ Auction Pro Platinum (seller_id) SQL Injection Vulnerability25-09-2008
LanSuite 3.3.2 (design) Local File Inclusion Vulnerability25-09-2008
MS Windows Wordpad .doc File Local Denial of Service PoC25-09-2008
Atomic Photo Album 1.1.0pre4 (XSS-SQL) Remote Vulnerabilities25-09-2008
openEngine <= 2.0 beta4 Remote File Inclusion Vulnerability25-09-2008
LanSuite 3.3.2 (fckeditor) Arbitrary File Upload Exploit25-09-2008