BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
BosClassifieds 3.0 (index.php cat) SQL Injection Vulnerability14-04-2008
HP OpenView NNM v7.5.1 ovalarmsrv.exe Remote Overflow Exploit14-04-2008
BosNews 4.0 (article) Remote SQL Injection Vulnerability14-04-2008
Koobi CMS 4.2.4-4.2.5-4.3.0 Multiple Remote SQL Injection Vulnerabilities14-04-2008
Koobi Pro 6.25 poll Remote SQL Injection Vulnerability14-04-2008
KwsPHP (Upload) Remote Code Execution Exploit14-04-2008
HP OpenView NNM v7.5.1 ovalarmsrv.exe Remote Overflow Exploit14-04-2008
1024 CMS <= 1.4.2 Local File Inclusion - Blind SQL Injection Exploit13-04-2008
Joomla Component com_extplorer <= 2.0.0 RC2 Local Directory Traversal13-04-2008
Pollbooth <= 2.0 (pollID) Remote SQL Injection Vulnerability13-04-2008
cpCommerce 1.1.0 (XSS-LFI) Multiple Remote Vulnerabilities13-04-2008
XM Easy Personal FTP Server 5.4.0 (XCWD) Denial of Service Exploit13-04-2008
PostCard 1.0 Remote Insecure Cookie Handling Vulnerability13-04-2008
Mumbo Jumbo Media OP4 Remote Blind SQL Injection Exploit13-04-2008
CcMail <= 1.0.1 Insecure Cookie Handling Vulnerability12-04-2008
Borland InterBase 2007 ibserver.exe Buffer Overflow PoC11-04-2008
PHPKB 1.5 Knowledge Base (ID) SQL Injection Vulnerability11-04-2008
NewsOffice 1.1 Remote File Inclusion Vulnerability11-04-2008
HP OpenView Network Node Manager <= 7.53 Multiple Vulnerabilities11-04-2008
Joomla Component joomlaXplorer <= 1.6.2 Remote Vulnerabilities11-04-2008
phpAddressBook 2.11 (view.php id) SQL Injection Vulnerability11-04-2008
LiveCart <= 1.1.1 (category id) Blind SQL Injection Exploit10-04-2008
Ksemail (index.php language) Local File Inclusion Vulnerability10-04-2008
Alsaplayer < 0.99.80-rc3 Vorbis Input Local Buffer Overflow Exploit10-04-2008
LightNEasy 1.2 (no database) Remote Hash Retrieve Exploit10-04-2008
RX Maxsoft (popup_img.php fotoID) Remote SQL Injection Vulnerability10-04-2008
IBiz E-Banking Integrator V2 ActiveX Edition Insecure Method Exploit09-04-2008
phpBB Add-on Fishing Cat Portal Remote File Inclusion Exploit09-04-2008
KnowledgeQuest 2.5 Arbitrary Add Admin Exploit09-04-2008
Free Photo Gallery Site Script (path) File Disclosure Vulnerability09-04-2008