Fmt.tar.gz contains tutorials in English and German on exploiting local format string vulnerabilities. This is a summary of tutorials from https://community.core-sdi.com/~juliano and includes sample code.
d8734dad39eae6eac7936a0b8293ae59adf0e02e8af61b742dc02ed9c0a777dc
Digit-Labs Security Advisory - Microsoft Visual Studio .NET on all VS.NET platforms creates a file called *.vbproj in the Web root directory which reveals the web site file structure.
5e23baba88cdc73cc30dbc3a80d757303ef3061270ab40c1edfd68b399e7b62e
NGSSoftware Security Advisory NISR22002002A - Microsoft SQL Server 2000 SP 2 allows unprivileged users to insert and run arbitrary commands because a public stored procedure fails to validate user input before passing it to xp_cmdshell. Fix available here.
ec956303773437c9c86299281915cc489c31d1aba9eef2f1ee381b8c865bfd6d
NessQuick currently consists of a a pair of perl scripts designed to assist in managing the output from Nessus scans and creating an alternate report format. These scripts help produce a report that lists all vulnerabilities and then enumerates each host that was found to contain that vulnerability. Pulls the .nbe files into a MySQL database.
03eb62d891913bf8e7cf5f4df03d29bf4d00f63d3376bcd564d7bd090646f794