BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
eXV2 Module bamaGalerie 3.03 Remote SQL Injection Vulnerability12-03-2008
XOOPS Module tutorials (printpage.php) SQL Injection Vulnerability12-03-2008
EasyCalendar <= 4.0tr Multiple Remote Vulnerabilities12-03-2008
EasyGallery <= 5.0tr Multiple Remote Vulnerabilities12-03-2008
Mapbender <= 2.4.4 (mapFiler.php) Remote Code Execution Vulnerability11-03-2008
Mapbender 2.4.4 (gaz) Remote SQL Injection Vulnerability11-03-2008
Bloo <= 1.00 Multiple Remote SQL Injection Vulnerabilities11-03-2008
MailEnable SMTP Service VRFY-EXPN Command Buffer Overflow DoS11-03-2008
phpBB Mod FileBase (id) Remote SQL Injection Vulnerability11-03-2008
Joomla Component ProductShowcase <= 1.5 SQL Injection Vulnerability11-03-2008
Motorola Timbuktu Pro 8.6.5-8.7 Path Traversal - Log Injection Exploit11-03-2008
Danneo CMS <= 0.5.1 Remote Blind SQL Injection Exploit11-03-2008
KingSoft UpdateOcx2.dll SetUninstallName() Heap Overflow PoC10-03-2008
Mambo Component eWriting 1.2.1 (cat) SQL Injection Vulnerability10-03-2008
Solaris 8-9-10 fifofs I_PEEK Local Kernel memory Leak Exploit10-03-2008
Acronis PXE Server 2.0.0.1076 Directory Traversal - NULL Pointer Vulns10-03-2008
ASG-Sentry <= 7.0.0 Multiple Remote Vulnerabilities10-03-2008
Argon Client Management Services <= 1.31 Directory Traversal Vuln10-03-2008
phpMyNewsletter <= 0.8b5 (archives.php msg_id) SQL Injection Exploit10-03-2008
QuickTicket <= 1.5 (qti_usr.php id) SQL Injection Vulnerability09-03-2008
BM Classifieds <= 20080409 Multiple SQL Injection Vulnerabilities09-03-2008
VHCS <= 2.4.7.1 (vhcs2_daemon) Remote Root Exploit09-03-2008
Joomla Component Candle 1.0 (cID) SQL Injection Vulnerability08-03-2008
zKup CMS 2.0 <= 2.3 Remote Add Admin Exploit07-03-2008
zKup CMS 2.0 <= 2.3 Remote Upload Exploit07-03-2008
Ruby 1.8.6 (Webrick Httpd 1.3.1) Directory Traversal Vulnerability06-03-2008
XOOPS Module Glossario 2.2 (sid) Remote SQL Injection Vulnerability06-03-2008
ICQ Toolbar 2.3 ActiveX Remote Denial of Service Exploit06-03-2008
XOOPS Module wfdownloads (cid) Remote SQL Injection Vulnerability06-03-2008
Versant Object Database <= 7.0.1.3 Commands Execution Exploit04-03-2008