BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Dokeos E-Learning System 1.8.5 Local File Inclusion Vulnerability28-07-2008
PixelPost 1.7.1 (language_full) Local File Inclusion Vulnerability28-07-2008
Velocity web-server 1.0 Directory Traversal File Download Vulnerability28-07-2008
Trend Micro OfficeScan ObjRemoveCtrl ActiveX Control BOF Exploit28-07-2008
ATutor <= 1.6.1-pl1 (import.php) Remote File Inclusion Vulnerability28-07-2008
ViArt Shop <= 3.5 (category_id) Remote SQL Injection Vulnerability28-07-2008
CMScout 2.05 (common.php bit) Local File Inclusion Vulnerability27-07-2008
Getacoder clone (sb_protype) Remote SQL Injection Vulnerability27-07-2008
GC Auction Platinum (cate_id) Remote SQL Injection Vulnerability27-07-2008
SiteAdmin CMS (art) Remote SQL Injection Vulnerability27-07-2008
fipsCMS light <= 2.1 (r) Remote SQL Injection Vulnerability26-07-2008
phpWebNews 0.2 MySQL Edition (SQL) Insecure Cookie Handling Vuln26-07-2008
IceBB <= 1.0-RC9.2 Blind SQL Injection - Session Hijacking Exploit26-07-2008
Mobius <= 1.4.4.1 (browse.php id) Remote SQL Injection Vulnerability26-07-2008
EPShop < 3.0 (pid) Remote SQL Injection Vulnerability26-07-2008
phpLinkat 0.1 Insecure Cookie Handling - SQL Injection Vulnerability26-07-2008
TriO <= 2.1 (browse.php id) Remote SQL Injection Vulnerability26-07-2008
minix 3.1.2a tty panic Remote Denial of Service Vulnerability25-07-2008
BIND 9.x Remote DNS Cache Poisoning Flaw Exploit (c)25-07-2008
xrms 1.99.2 (RFI-XSS-IG) Multiple Remote Vulnerabilities25-07-2008
Camera Life 2.6.2 (id) Remote SQL Injection Vulnerability25-07-2008
FizzMedia 1.51.2 (comment.php mid) SQL Injection Vulnerability25-07-2008
phpTest 0.6.3 (picture.php image_id) Remote SQL Injection Vulnerability25-07-2008
BIND 9.x Remote DNS Cache Poisoning Flaw Exploit (py)24-07-2008
Microsoft Access (Snapview.ocx 10.0.5529.0) ActiveX Remote Exploit24-07-2008
Atom PhotoBlog 1.1.5b1 (photoId) Remote SQL Injection Vulnerability24-07-2008
ibase <= 2.03 (download.php) Remote File Disclosure Vulnerability24-07-2008
Wordpress Plugin Download Manager 0.2 Arbitrary File Upload Exploit24-07-2008
Live Music Plus 1.1.0 (id) Remote SQL Injection Vulnerability24-07-2008
minix 3.1.2a tty panic Local Denial of Service Vulnerability23-07-2008