BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Atomic Photo Album 1.1.0pre4 (XSS-SQL) Multiple Remote Vulnerabilities25-09-2008
ICONICS Vessel - Gauge - Switch 8.02.140 ActiveX BOF Exploit (meta)25-09-2008
Vikingboard <= 0.2 Beta SQL Column Truncation Vulnerability25-09-2008
Jadu CMS for Government (recruit_details.php) SQL Injection Vuln24-09-2008
webcp 0.5.7 (filelocation) Remote File Disclosure Vulnerability24-09-2008
ADN Forum <= 1.0b Insecure Cookie Handling Vulnerability24-09-2008
Google Chrome Browser Carriage Return Null Object Memory Exhaustion24-09-2008
Jadu CMS for Government (recruit_details.php) SQL Injection Vulnerability24-09-2008
PHPcounter <= 1.3.2 (defs.php l) Local File Inclusion Vulnerability24-09-2008
AJ Auction Pro Platinum Skin #2 (detail.php item_id) SQL Injection Vuln24-09-2008
emergecolab 1.0 (sitecode) Local File Inclusion Vulnerability24-09-2008
mailwatch <= 1.0.4 (docs.php doc) Local File Inclusion Vulnerability24-09-2008
BurnAware NMSDVDXU ActiveX Remote Arbitrary File Creation-Execution24-09-2008
Jetik Emlak ESA 2.0 Multiple Remote SQL Injection Vulnerabilities24-09-2008
Rianxosencabos CMS 0.9 Remote Add Admin Exploit24-09-2008
Hotscripts Clone (cid) Remote SQL Injection Vulnerability24-09-2008
Ol Bookmarks Manager 0.7.5 RFI - LFI - SQL Injection Vulnerabilities24-09-2008
barcodegen <= 2.0.0 Local File Inclusion Vulnerability24-09-2008
Observer 0.3.2.1 Multiple Remote Command Execution Vulnerabilities24-09-2008
Galmeta Post CMS <= 0.2 Remote Code Execution - Arbitrary File Upload Vulns23-09-2008
Chilkat XML ActiveX Remote Arbitrary File Creation-Execution Exploit23-09-2008
Debian Sarge Multiple IMAP Server Denial of Service Exploit23-09-2008
OpenRat <= 0.8-beta4 (tpl_dir) Remote File Inclusion Vulnerability23-09-2008
Sofi WebGui <= 0.6.3 PRE (mod_dir) Remote File Inclusion Vulnerability23-09-2008
iGaming CMS <= 1.5 Multiple Remote SQL Injection Exploit23-09-2008
Ol Bookmarks Manager 0.7.5 Local File Inclusion Vulnerability23-09-2008
WebPortal CMS <= 0.7.4 (code) Remote Code Execution Vulnerability23-09-2008
Galmeta Post CMS <= 0.2 Remote Code Execution - Arbitrary File Upload23-09-2008
JETIK-WEB Software (sayfa.php kat) SQL Injection Vulnerability23-09-2008
OpenElec <= v3.01 (form.php obj) Local File Inclusion Vulnerability22-09-2008