Detection for CVE-2022-34265 (SQLi in Django)
Copy link to “Detection for CVE-2022-34265 (SQLi in Django)”Network Scanner can now detect if a Django application is vulnerable to SQL Injection (CVE-2022-34265).
These are the latest updates we've made to our platform. If you have any questions about any of the updates you see below, please feel free to contact us!
Network Scanner can now detect if a Django application is vulnerable to SQL Injection (CVE-2022-34265).
Sniper can now exploit a Pre-Authorization Arbitrary File Read vulnerability affecting Atlassian Jira (CVE-2021-26086).
Sniper can now exploit an Authentication Bypass vulnerability (CVE-2022-27925) and an Arbitrary File Upload (CVE-2022-37042) affecting the Zimbra collaboration suite.
Network Scanner can now detect if an Apache HTTP Server is vulnerable to Cache-Digest Denial of Service Attack (CVE-2020-9490).
Sniper can now exploit a Pre-Authorization Arbitrary File Read vulnerability affecting Atlassian Jira (CVE-2019-8442).
Website Scanner is now greatly improved (up to 60%) by parallelising the active detectors.
Network Scanner can now detect if a Jira server is vulnerable to Information Disclosure (CVE-2020-14179).
Sniper can now exploit a Pre-Authorization Arbitrary File Read vulnerability affecting Atlassian Confluence (CVE-2021-26085).
Network Scanner can now detect if an Emlog instance is vulnerable to Path Disclosure (CVE-2021-3293).
We've replaced the old Targets page with a new Assets page where you can easily sort, filter and more with our new design. The new version also better reflects the Targets by grouping them under their according Asset and offers more flexibility with selection operations.
Password Auditor can now discover weak credentials for the SMB service.
Password Auditor can now discover weak credentials for the WinRM service.
Network Scanner can now detect if an Atlassian Confluence server is vulnerable to an Authentication Bypass vulnerability (CVE-2022-26138).
Network Scanner can now detect if an Apache Tomcat Server is vulnerable to Open Redirect (CVE-2018-11784).
Network Scanner can now detect if the web interfaces of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) are vulnerable to Cross-Site Scripting (CVE-2020-3580).
Sniper can now exploit a Remote Code Execution vulnerability affecting the Timelion visualizer from a Kibana instance (CVE-2019-7609).
Network Scanner can now detect if a Spring Data MongoDB application is vulnerable to SpEL(Spring Expression Language) Injection (CVE-2022-22980).
Sniper can now exploit a Remote Code Execution vulnerability affecting Atlassian Crowd and Crowd Data Center instances (CVE-2019-11580).
Our blog just got a massive revamp. We launched a new blog with a fresh redesign that helps you stay focused and get ethical hacking guides from our offensive specialists.