BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
MyDoomScanner 1.00 - Local Buffer Overflow (PoC)17-08-2017
Microsoft Edge 38.14393.1066.0 - 'CInputDateTimeScrollerElement::_SelectValueInternal' Out-of-Bounds Read16-08-2017
AdvanDate iCupid Dating Software 12.2 - SQL Injection15-08-2017
ClipBucket 2.8.3 - Multiple Vulnerabilities15-08-2017
Internet Download Manager 6.28 Build 17 - Buffer Overflow (SEH Unicode)15-08-2017
ALLPlayer 7.4 - Buffer Overflow (SEH Unicode)15-08-2017
Quali CloudShell 7.1.0.6508 (Patch 6) - Persistent Cross Site Scripting14-08-2017
Xamarin Studio for Mac 6.2.1 (build 3)/6.3 (build 863) - Privilege Escalation14-08-2017
Tomabo MP4 Converter 3.19.15 - Denial of Service13-08-2017
RealTime RWR-3G-100 Router - Cross-Site Request Forgery (Change Admin Password)12-08-2017
De-Tutor 1.0 - SQL Injection11-08-2017
De-Journal 1.0 - SQL Injection11-08-2017
DeWorkshop 1.0 - SQL Injection11-08-2017
Microsoft Edge 38.14393.1066.0 - 'textarea.defaultValue' Memory Disclosure10-08-2017
Red-Gate SQL Monitor < 3.10/4.2 - Authentication Bypass10-08-2017
Piwigo Plugin User Tag 0.9.0 - Cross-Site Scripting10-08-2017
ImageBay 1.0 - SQL Injection10-08-2017
GIF Collection 2.0 - SQL Injection10-08-2017
DALIM SOFTWARE ES Core 5.0 build 7184.1 - Directory Traversal09-08-2017
WebFile Explorer 1.0 - Arbitrary File Download09-08-2017
DALIM SOFTWARE ES Core 5.0 build 7184.1 - Cross-Site Scripting / Cross-Site Request09-08-2017
DALIM SOFTWARE ES Core 5.0 build 7184.1 - Server-Side Request Forgery09-08-2017
DALIM SOFTWARE ES Core 5.0 build 7184.1 - User Enumeration09-08-2017
Synology Photo Station 6.7.3-3432 / 6.3-2967 - Remote Code Execution08-08-2017
Microsoft Windows 8.1 (x64) - RGNOBJ Integer Overflow (MS16-098) (2)08-08-2017
WordPress Plugin Easy Modal 2.0.17 - SQL Injection07-08-2017
Microsoft Windows - LNK Shortcut File Code Execution06-08-2017
Linux x86 - /bin/sh Shellcode (24 bytes)06-08-2017
Technicolor TC7337 - SSID Persistent Cross-Site Scripting03-08-2017
VirtualBox 5.1.22 - Windows Process DLL UNC Path Signature Bypass Privilege Escalation03-08-2017