BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
MyPHP Forum <= 3.0 (Final) Multiple SQL Injection Vulnerabilities31-12-2007
Zenphoto 1.1.3 (rss.php albumnr) Remote SQL Injection Exploit31-12-2007
oneSCHOOL (all versions) admin-login.asp SQL Injection exploit31-12-2007
Vantage Linguistics AnswerWorks 4 API ActiveX Control BoF Exploit31-12-2007
WebPortal CMS <= 0.6.0 (index.php m) Remote SQL Injection Exploit31-12-2007
Joomla Component PU Arcade <= 2.1.3 SQL Injection Vulnerability31-12-2007
CMS Made Simple <= 1.2.2 (TinyMCE module) SQL Injection Vuln30-12-2007
Kontakt Formular 1.4 Remote File Inclusion Vulnerability30-12-2007
Mihalism Multi Host 2.0.7 download.php Remote File Disclosure Vuln30-12-2007
XCMS <= 1.83 Remote Command Execution Exploit30-12-2007
Bitweaver R2 CMS Remote File Upload - Disclosure Vulnerabilities30-12-2007
MatPo Bilder Galerie 1.1 Remote File Inclusion Vulnerability30-12-2007
SanyBee Gallery 0.1.1 (p) Local File Inclusion Vulnerability30-12-2007
w-Agora <= 4.2.1 (cat) Remote SQL Injection Vulnerability30-12-2007
IBM Domino Web Access Upload Module inotes6.dll BoF Exploit30-12-2007
Macrovision Installshield isusweb.dll SEH Overwrite Exploit30-12-2007
IBM Domino Web Access Upload Module dwa7w.dll BoF Exploit30-12-2007
jPORTAL 2.3.1 & UserPatch (forum.php) Remote Code Execution Exploit29-12-2007
Mihalism Multi Forum Host <= 3.0.x Remote File Inclusion Vulnerability29-12-2007
CCMS 3.1 Demo Remote SQL Injection Exploit29-12-2007
xml2owl 0.1.1 showCode.php Remote Command Execution Vulnerability28-12-2007
SkyFex Client 1.0 ActiveX Start() Method Remote Stack Overflow28-12-2007
XCMS <= 1.82 Remote Local File Inclusion Vulnerability28-12-2007
xml2owl 0.1.1 (File Disclosure-XSS) Multiple Remote Vulnerabilities28-12-2007
Hot or Not Clone by Jnshosts.com Database Backup Dump Vulnerability28-12-2007
NoseRub <= 0.5.2 Login SQL Injection Vulnerability28-12-2007
Persits Software XUpload Control AddFolder() Buffer Overflow Exploit28-12-2007
March Networks DVR 3204 Logfile Information Disclosure Exploit27-12-2007
ZeusCMS <= 0.3 Remote Blind SQL Injection Exploit27-12-2007
Joovili <= 3.0.6 (joovili.images.php) Remote File Disclosure Vulnerability27-12-2007