BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
NEWSolved Lite v1.9.2 (abs_path) Remote File Inclusion Vulnerabilities07-08-2006
Barracuda Spam Firewall <= 3.3.03.053 Remote Code Execution07-08-2006
QuestCMS (main.php) Remote File Include Vulnerability07-08-2006
YenerTurk Haber Script 1.0 Remote SQL Injection Vulnerability07-08-2006
PHPCodeCabinet <= 0.5 (Core.php) Remote File Include Vulnerability07-08-2006
eIQnetworks License Manager Remote Buffer Overflow Exploit (multi)07-08-2006
Visual Events Calendar 1.1 (cfg_dir) Remote Include Vulnerability07-08-2006
ZoneX 1.0.3 Publishers Gold Edition Remote File Inclusion Vulnerability07-08-2006
TWiki <= 4.0.4 (configure) Remote Command Execution Exploit07-08-2006
eIQnetworks License Manager Remote Buffer Overflow Exploit (multi)07-08-2006
SendCard <= 3.4.0 Unauthorized Administrative Access Exploit03-08-2006
WoW Roster <= 1.70 (-lib-phpbb.php) Remote File Include Vulnerability02-08-2006
TWiki <= 4.0.4 (Configure Script) Remote Code Execution Exploit (meta)02-08-2006
Mac OS X <= 10.3.8 (CF_CHARSET_PATH) Local BOF Exploit (2)02-08-2006
SaveWeb Portal <= 3.4 (SITE_Path) Remote File Inclusion Vulnerabilities02-08-2006
TinyPHP Forum <= 3.6 (makeadmin) Remote Admin Maker Exploit02-08-2006
Kayako eSupport <= 2.3.1 (subd) Remote File Inclusion Vulnerability02-08-2006
TSEP <= 0.942 (colorswitch.php) Remote Inclusion Vulnerability02-08-2006
NewsLetter <= 3.5 (NL_PATH) Remote File Inclusion Vulnerability01-08-2006
TSEP <= 0.942 (copyright.php) Remote Inclusion Vulnerability01-08-2006
WoW Roster <= 1.5.1 (subdir) Remote File Include Vulnerability01-08-2006
PHPAuction 2.1 (phpAds_path) Remote File Inclusion Vulnerability01-08-2006
newsReporter <= 1.1 (index.php) Remote Inclusion Vulnerability01-08-2006
Voodoo chat <= 1.0RC1b (file_path) Remote File Inclusion Vulnerability01-08-2006
k_shoutBox <= 4.4 Remote File Inclusion Vulnerability01-08-2006
k_fileManager <= 1.2 (dwl_include_path) Remote Inclusion Vulnerability01-08-2006
XMB <= 1.9.6 (u2uid) Remote SQL Injection Exploit (mq=off)01-08-2006
Mac OS X <= 10.4.7 fetchmail Privilege Escalation Exploit (x86)01-08-2006
Mac OS X <= 10.4.7 fetchmail Privilege Escalation Exploit (ppc)01-08-2006
Mac OS X <= 10.4.7 fetchmail Privilege Escalation Exploit01-08-2006