BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
phpUserBase 1.3b (unverified.inc.php) Remote File Inclusion Vulnerability24-02-2008
Pigyard Art Gallery Multiple Remote Vulnerabilities24-02-2008
Portail Web Php <= 2.5.1.1 Multiple Inclusion Vulnerabilities24-02-2008
php Download Manager <= 1.1 Local File Inclusion Vulnerability24-02-2008
phpProfiles 4.5.2 BETA (body_comm.inc.php) RFI Vulnerability23-02-2008
Quinsonnas Mail Checker 1.55 (footer.php) RFI Vulnerability23-02-2008
Joomla Component simple shop 2.0 SQL Injection Vulnerability23-02-2008
Mambo Component garyscookbook <= 1.1.1 SQL Injection Vulnerability23-02-2008
phpUserBase 1.3b (unverified.inc.php) Local File Inclusion Vulnerability23-02-2008
phpQLAdmin 2.2.7 Multiple Remote File Inclusion Vulnerabilities22-02-2008
Quantum Game Library 0.7.2c Remote File Inclusion Vulnerabilities22-02-2008
PunBB <= 1.2.16 Blind Password Recovery Exploit21-02-2008
X.Org xorg-x11-xfs <= 1.0.2-3.1 Local Race Condition Exploit21-02-2008
PHP-Nuke Modules Manuales 0.1 (cid) SQL Injection Vulnerability21-02-2008
PHP-Nuke Module Siir (id) Remote SQL Injection Vulnerability21-02-2008
BeContent v.031 (id) Remote SQL Injection Vulnerability21-02-2008
OSSIM 0.9.9rc5 (XSS-SQL Injection) Multiple Remote Vulnerabilities21-02-2008
PHP-Nuke Module NukeC 2.1 (id_catg) SQL Injection Vulnerability21-02-2008
PHP-Nuke Modules Okul 1.0 (okulid) Remote SQL Injection Vulnerability20-02-2008
Joomla Component com_hwdvideoshare SQL Injection Vulnerability20-02-2008
PHP-Nuke Module Docum (artid) SQL Injection Vulnerability20-02-2008
Globsy 1.0 (file) Remote File Disclosure Vulnerability20-02-2008
PHP-Nuke Module Inhalt (cid) SQL Injection Vulnerability20-02-2008
Woltlab Burning Board 3.0.x Remote Blind SQL Injection Exploit20-02-2008
MultiCart 2.0 (productdetails.php) Remote SQL Injection Exploit20-02-2008
X.Org xorg-server <= 1.1.1-48.13 Probe for Files Exploit PoC19-02-2008
Ourgame GLWorld 2.x hgs_startNotify() ActiveX Buffer Overflow Exploit19-02-2008
PHP-Nuke Module Sections (artid) Remote SQL Injection Vulnerability19-02-2008
PHP-Nuke Module EasyContent (page_id) SQL Injection Vulnerability19-02-2008
RunCMS Module MyAnnonces (cid) SQL Injection Vulnerability19-02-2008