BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Mura CMS < 6.2 - Server-Side Request Forgery / XML External Entity Injection24-10-2017
Polycom - Command Shell Authorization Bypass (Metasploit)23-10-2017
Unitrends UEB 9 - bpserverd Authentication Bypass Remote Command Execution (Metasploit)23-10-2017
Unitrends UEB 9 - http api/storage Remote Root (Metasploit)23-10-2017
K7 Total Security 15.1.0.305 - Device Driver Arbitrary Memory Read23-10-2017
Kaltura <= 13.1.0 - Remote Code Execution23-10-2017
FS Food Delivery Script - 'keywords' Parameter SQL Injection23-10-2017
FS Amazon Clone - 'category_id' Parameter SQL Injection23-10-2017
FS Book Store Script - 'category' Parameter SQL Injection23-10-2017
FS Lynda Clone - 'category' Parameter SQL Injection23-10-2017
FS Indiamart Clone - 'keywords' Parameter SQL Injection23-10-2017
FS Ebay Clone - 'pd_maincat_id' Parameter SQL Injection23-10-2017
FS OLX Clone - 'catg_id' Parameter SQL Injection23-10-2017
FS Freelancer Clone - 'sk' Parameter SQL Injection23-10-2017
FS Expedia Clone - 'hid' Parameter SQL Injection23-10-2017
FS Groupon Clone - 'category' Parameter SQL Injection23-10-2017
FS Car Rental Script - 'pickup_location' Parameter SQL Injection23-10-2017
Mikogo 5.4.1.160608 - Local Credentials Disclosure23-10-2017
WordPress Plugin Polls 1.2.4 - SQL Injection (PoC)22-10-2017
Linux Kernel 4.14.0-rc4+ - 'waitid()' Privilege Escalation22-10-2017
CometChat < 6.2.0 BETA 1 - Local File Inclusion22-10-2017
ArGoSoft Mini Mail Server 1.0.0.2 - Denial of Service21-10-2017
Ayukov NFTP FTP Client <= 2.0 - Buffer Overflow21-10-2017
Mozilla Firefox < 55 - Denial of Service20-10-2017
Axis SSI - Remote Command Execution / Read Files20-10-2017
Microsoft Game Definition File Editor 6.3.9600 - XML External Entity Injection19-10-2017
Linksys E Series - Multiple Vulnerabilities18-10-2017
Afian AB FileRun 2017.03.18 - Multiple Vulnerabilities18-10-2017
Xen - Unbounded Recursion in Pagetable De-typing18-10-2017
Check_MK 1.2.8p25 - Information Disclosure18-10-2017