BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
PHP-Nuke NukeAI Module 3b (util.php) Remote File Include Exploit24-11-2006
Cahier de texte 2.0 (Database Backup-Source Disclosure) Remote Exploit24-11-2006
Messagerie Locale (centre.php) Remote File Inclusion Vulnerability23-11-2006
Site News (centre.php) Remote File Inclusion Vulnerability23-11-2006
Recipes Complete Website 1.1.14 Remote SQL Injection Vulnerabilities23-11-2006
Wallpaper Complete Website 1.0.09 Remote SQL Injection Vulnerabilities23-11-2006
JiRos FAQ Manager 1.0 (index.asp) Remote SQL Injection Vulnerability23-11-2006
Oracle <= 9i - 10g (read-write-execute) Exploitation Suite23-11-2006
HSRS 1.0 (addcode.php) Remote File Include Vulnerability23-11-2006
OWLLib 1.0 (OWLMemoryProperty.php) Remote File Include Vulnerability23-11-2006
PEGames (index.php) Remote File Include Vulnerability23-11-2006
Woltlab Burning Board Lite 1.0.2 Blind SQL Injection Exploit23-11-2006
fipsCMS <= 4.5 (index.asp) Remote SQL Injection Exploit22-11-2006
fipsGallery <= 1.5 (index1.asp) Remote SQL Injection Vulnerability22-11-2006
fipsForum <= 2.6 (default2.asp) Remote SQL Injection Vulnerability22-11-2006
a-ConMan <= 3.2b (common.inc.php) Remote File Inclusion Vulnerability22-11-2006
Photo Cart 3.9 (adminprint.php) Remote File Include Vulnerability21-11-2006
e-Ark 1.0 (src-ark_inc.php) Remote File Include Vulnerability21-11-2006
LDU <= 8.x (avatarselect id) Remote SQL Injection Vulnerability21-11-2006
Seditio <= 1.10 (avatarselect id) Remote SQL Injection Vulnerability21-11-2006
XMPlay 3.3.0.4 (PLS) Local-Remote Buffer Overflow Exploit21-11-2006
ContentNow 1.39 (pageid) Remote SQL Injection Exploit21-11-2006
aBitWhizzy (abitwhizzy.php) Information Disclosure Vulnerability21-11-2006
XMPlay 3.3.0.4 (ASX Filename) Local Buffer Overflow Exploit21-11-2006
Pearl Forums 2.4 Multiple Remote File Include Vulnerabilities21-11-2006
phpPC <= 1.04 Multiple Remote File Inclusion Vulnerabilities21-11-2006
XMPlay 3.3.0.4 (M3U Filename) Local Buffer Overflow Exploit20-11-2006
ASPNuke <= 0.80 (register.asp) Remote SQL Injection Vulnerability19-11-2006
PHPQuickGallery <= 1.9 (textFile) Remote File Include Vulnerability19-11-2006
MS Windows NetpManageIPCConnect Stack Overflow Exploit (py)18-11-2006