BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Seditio CMS <= 121 Remote SQL Injection Exploit29-11-2007
KML share 1.1 (region.php layer) Remote File Disclosure Vulnerability29-11-2007
LearnLoop 2.0beta7 (sFilePath) Remote File Disclosure Vulnerability29-11-2007
FTP Admin 0.1.0 (LFI-XSS-AB) Multiple Remote Vulnerabilities29-11-2007
Windows Media Player AIFF Divide By Zero Exception DoS PoC29-11-2007
PHP-CON 1.3 (include.php) Remote File Inclusion Vulnerability28-11-2007
EHCP <= 0.22.8 Multiple Remote File Inclusion Vulnerabilities28-11-2007
Charrays CMS 0.9.3 Multiple Remote File Inclusion Vulnerabilities28-11-2007
TuMusika Evolution 1.7R5 Remote File Disclosure Vulnerability28-11-2007
NoAh <= 0.9 pre 1.2 (filepath) Remote File Disclosure Vulnerabilities28-11-2007
BitDefender Online Scanner 8 ActiveX Heap Overflow Exploit27-11-2007
Apple QuickTime 7.2-7.3 RSTP Response Universal Exploit (cool)27-11-2007
Eurologon CMS Multiple Remote SQL Injection Vulnerabilities27-11-2007
Eurologon CMS files.php Arbitrary File Download Vulnerability27-11-2007
PHP-Nuke NSN Script Depository 1.0.0 Remote Source Disclosure Vuln27-11-2007
wpQuiz 2.7 Multiple Remote SQL Injection Vulnerabilities27-11-2007
project alumni 1.0.9 (index.php act) Local File Inclusion Vulnerability27-11-2007
Apple QuickTime 7.2-7.3 RTSP Response Universal Exploit (IE7-FF-Opera)26-11-2007
DeluxeBB <= 1.09 Remote Admin Email Change Exploit26-11-2007
Tilde CMS <= 4.x (aarstal) Remote SQL Injection Vulnerability26-11-2007
RunCMS <= 1.6 disclaimer.php Remote File Overwrite Exploit25-11-2007
IAPR COMMENCE 1.3 Multiple Remote File Inclusion Vulnerability25-11-2007
Softbiz Freelancers Script v.1 Remote SQL Injection Exploit25-11-2007
Apple QuickTime 7.2-7.3 RSTP Response Code Exec Exploit (Vista-XP)24-11-2007
Amber Script 1.0 (show_content.php id) Local File Inclusion Vulnerability24-11-2007
WorkingOnWeb 2.0.1400 events.php Remote SQL Injection Vulnerability24-11-2007
PBLang <= 4.99.17.q Remote File Rewriting - Command Execution24-11-2007
project alumni <= 1.0.9 Remote XSS - SQL Injection Vulnerability24-11-2007
RunCMS <= 1.6 Local File Inclusion Vulnerability24-11-2007
Apple QuickTime 7.2-7.3 RTSP Response Remote SEH Overwrite PoC23-11-2007