Acunetix Premium - v15.2

admin 2022年12月19日13:50:06评论134 views字数 1847阅读6分9秒阅读模式

Acunetix Premium - v15.2

Acunetix Premium - v15.2

Acunetix Premium - v15.2

NEW SECURITY CHECKS
Updated the WordPress plugin vulnerabilities.Added the AjaxPro.NET Professional Deserialization RCE (CVE-2021-23758).Improved the out-of-band detection.
IMPROVEMENTS
Added ability to send HTTP requests to pre-request scripts.Various DeepScan improvements, generally improving the processing of JavaScript-rich web applications.Updated the embedded Chromium browser to v108.0.5359.71.Implemented the scan id to limit the caching, such as file list and libraries, to a scan.Improved the performance of alert transmission for AcuSensor.
FIXES
Fixed the MongoDB injection and removed JSON parsing from the feature extraction library to avoid scan crashes.Fixed the issue that sent bogus report because of inconsistent last scan id.Improved the Pre request script to send an HTTP job.Fixed the formatting issue for vulnerabilities exported to GitHub Issues.Fixed the unhandled exception that the IAST Bridge throws.Fixed the business logic recorder issue that failed to replay the logic sequence recorder.Fixed the issue that the custom scripts folder was not created during the installation.Fixed the issue that failed to show the Chinese on some headings when switched to Chinese.Fixed the manual intervention required information box that began to appear in the notification bar instead of being displayed as a dialog box.Added cURL as a backup if NSLookup is not present.Fixed the Jira integration that failed to create the epic issues.Fixed the issue that long scan names overlap with the AcuSensor icon.Fixed the issue that the authorization bearer was not used throughout the scan.

这次更新改进了 WordPress 插件漏洞的检测,并添加了对 AjaxPro.NET 专业反序列化远程代码执行漏洞(CVE-2021-23758)的检测。提高了带外检测的能力,并添加了向预请求脚本发送 HTTP 请求的功能。
对深度扫描进行了各种改进,提高了对 JavaScript 密集的网络应用的处理能力。我们将内嵌的 Chromium 浏览器升级到了 v108.0.5359.71 版本,并实现了扫描 ID 的限制,以将文件列表和库限制在单次扫描中。改进了 AcuSensor 的报警传输性能。
软件更新地址关注法海博客,等待更新,目前下载仍是15.1。
bash <(curl -sLk https://www.fahai.org/aDisk/Awvs/check.sh) xrsec/awvs:v15
URL: https://server_ip:3443/#/loginUserName: [email protected]PassWord: [email protected]

原文始发于微信公众号(利刃信安):Acunetix Premium - v15.2

  • 左青龙
  • 微信扫一扫
  • weinxin
  • 右白虎
  • 微信扫一扫
  • weinxin
admin
  • 本文由 发表于 2022年12月19日13:50:06
  • 转载请保留本文链接(CN-SEC中文网:感谢原作者辛苦付出):
                   Acunetix Premium - v15.2https://cn-sec.com/archives/1462868.html

发表评论

匿名网友 填写信息