Advisory

EvilFingers advisory page is created with an intent to share our analysis and findings with you. Our listings will be published in SecurityFocus and our exploits will be shared with milw0rm website.

Advisory List: Nov 2009

Nov 14, 2009

  • Avast aswRdr.sys Kernel Pool Corruption and Local Privilege Vuln.
  • Advisory List: Sep 2009

    Sep 23, 2009

  • Avast aswMon2.sys Kernel Memory Corruption Vuln.
  • Advisory List: Aug 2009

    Aug 15, 2009

  • TheGreenBow VPN Client tgbvpn.sys DoS Vuln.
  • Advisory List: Apr 2009

    Apr 28, 2009

  • Google Chrome 1.0.154.59 "throw exception" Memory Exhaustion Vuln.
  • Advisory List: Mar 2009

    Mar 14, 2009

  • Google Chrome 1.0.154.48 Single Thread Alert Out of Bound Memory PoC
  • Advisory List: Jan 2009

    Jan 28, 2009

  • Google Chrome 1.0.154.43 ClickJacking Vulnerability
  • Jan 18, 2009

  • Oracle EBusiness Suite Sensitive Information Disclosure Vulnerability
  • Jan 04, 2009

  • Google Chrome FTP PASV IP Malicious Scanning Vulnerability
  • Advisory List: Dec 2008

    Dec 23, 2008

  • PGP Desktop 9.0.6 Denial Of Service Vulnerability PoC
  • Advisory List: Nov 2008

    Nov 24, 2008

  • Google Chrome MetaCharacter URI Obfuscation Vulnerability
  • Advisory List: Oct 2008

    Oct 20, 2008

  • Google Chrome OnbeforeUload and OnUnload Null Check Vuln
  • Advisory List: Sep 2008

    Sep 28, 2008

  • Opera Window Object Suppressing Remote DoS
  • Sep 27, 2008

  • Firefox Null Pointer Dereference Dispatcher Crash and Remote DoS.
  • Google Chrome Window Object Suppressing Remote DoS
  • Sep 23, 2008

  • Google Chrome Carriage Return Null Obj. Memory Exhaustion Remote DoS
  • Sep 19, 2008

  • Achievo-1.3.2-STABLE Cross Site Scripting (XSS)
  • Sep 18, 2008

  • AssetMan v2.5-b SQL Injection using Session Fixation Attack
  • Sep 17, 2008

  • Skype IM Client Password Disclosure Vulnerability
  • Miranda IM Client Password Disclosure Vulnerability
  • PidginIM Client Password Disclosure Vulnerability
  • Microsoft Internet Explorer DoS in Rendering Malicious PNG File
  • Sep 2, 2008

  • Google Chrome Browser 0.2.149.27 in chrome.dll