BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Acidcat CMS 3.4.1 Multiple Remote Vulnerabilities20-04-2008
AllMyGuests <= 0.4.1 (AMG_id) Remote SQL Injection Vulnerability19-04-2008
PHP-Fusion <= 6.01.14 Remote Blind SQL Injection Exploit19-04-2008
Apartment Search Script (listtest.php r) SQL Injection Vulnerability19-04-2008
SubEdit Player build 4066 subtitle Buffer Overflow PoC19-04-2008
XOOPS Module Recipe (detail.php id) SQL Injection Vulnerability19-04-2008
Aterr 0.9.1 (class) Local File Inclusion Vulnerabilities (php5)19-04-2008
DivX Player 6.6.0 SRT File SEH Buffer Overflow Exploit18-04-2008
Grape Statistics 0.2a (location) Remote File Inclusion Vulnerability18-04-2008
5th Avenue Shopping Cart (category_ID) SQL Injection Vulnerability18-04-2008
2532|Gigs <= 1.2.2 Arbitrary Database Backup-Download Vulnerability18-04-2008
OpenInvoice 0.9 Arbitrary Change User Password Exploit18-04-2008
PhShoutBox <= 1.5 (final) Insecure Cookie Handling Vulnerability18-04-2008
Simple Customer 1.2 (contact.php id) SQL Injection Vulnerability18-04-2008
e107 Module 123 Flash Chat 6.8.0 Remote File Inclusion Vulnerability17-04-2008
Microsoft Works 7 WkImgSrv.dll ActiveX Denial of Service PoC17-04-2008
Intel Centrino ipw2200BG Wireless Driver Remote BOF Exploit (meta)17-04-2008
BS.Player 2.27 Build 959 SRT File Buffer Overflow PoC16-04-2008
Carbon Communities <= 2.4 Multiple Remote Vulnerabilities16-04-2008
XplodPHP AutoTutorials <= 2.1 (id) SQL Injection Vulnerability16-04-2008
xine-lib <= 1.1.12 NSF demuxer Stack Overflow Vulnerability PoC16-04-2008
Classifieds Caffe (index.php cat_id) SQL Injection Vulnerability15-04-2008
BigAnt Server 2.2 PreAuth Remote SEH Overflow Exploit (0day)15-04-2008
LightNEasy SQLite - no database <= 1.2.2 Multiple Remote Vulnerabilities15-04-2008
DivX Player <= 6.7.0 SRT File Buffer Overflow PoC15-04-2008
Lasernet CMS 1.5 (new) Remote SQL Injection Vulnerability15-04-2008
BigAnt Server 2.2 PreAuth Remote SEH Overflow Exploit (0day)15-04-2008
SmallBiz 4 Seasons CMS Remote SQL Injection Vulnerability14-04-2008
MS Windows GDI Image Parsing Stack Overflow Exploit (MS08-021)14-04-2008
SmallBiz eShop (content_id) Remote SQL Injection Vulnerability14-04-2008