Exploit for CVE-2023-42793 (RCE in JetBrains TeamCity)
Copy link to “Exploit for CVE-2023-42793 (RCE in JetBrains TeamCity)”Sniper can exploit a RCE vulnerability found in JetBrains TeamCity (CVE-2023-42793).
These are the latest updates we've made to our platform. If you have any questions about any of the updates you see below, please feel free to contact us!
Sniper can exploit a RCE vulnerability found in JetBrains TeamCity (CVE-2023-42793).
Our REST API is now available. The old API is now legacy, but we’ll retire on December 31, 2023. The new API keeps all the existing features but adds new ones such as: a proper RESTful interface, cleaner JSON responses, the option to choose your redirect level for fewer connection errors, select the format for your callbacks (no more PDFs!), multiple API keys (with expiration dates for each of them), and more!
We've added multiple scan techniques (SYN, Connect(), ACK, Window, FIN, Xmas, etc.) to our TCP Port Scanner so you have multiple options to scan networks and find available hosts and their services.
We've added the basic authentication option when using the WordPress Scanner. Choose a custom scan type, enable Authentication, and fill in the credentials.
Website Scanner now gives you a complete list of the URLs it spidered, including all the duplicates. Rest assured knowing the scanner thoroughly inspected all paths. You can see them by clicking the details of the Spidered URLs finding and checking the references.
Network Scanner detects if CVE-2023-42115 (RCE in Exim) affects your targets.
Sniper can exploit a RCE vulnerability discovered in Juniper (CVE-2023-36845).
You can now find the URL Fuzzer in the Reconnaissance category.
The API Scanner now performs scans on GraphQL instances. Use it to check for Denial of Service attacks (circular reference, field duplication, alias overloading) or Information disclosure vulnerabilities (field suggestion, introspective enabled, console enabled).
My account section is now completely redesigned and easier to use than ever. We divided all the existing settings into specific categories so you can find what you are looking for in a matter of seconds.We've also added two new features: the option to add a profile picture and to see your login history. We'll include more updates soon, so stay tuned.
We've changed our SSL/TLS Scanner to support 3 running modes (light, full, and custom) that allow you to scan targets with a predefined configuration.
Network Scanner can now detect if CVE-2022-27510 (Authentication Bypass in Citrix ADC & Gateway) affects your targets.
Sniper can exploit a RCE vulnerability discovered in VMware Aria Operations for Networks (CVE-2023-34039).
Sniper can exploit a RCE vulnerability discovered in CloudPanel (CVE-2023-35885).
We've added a warning message in the platform that lets you know whether your email address is unable to receive emails.
Website Scanner: We've added a new detection mechanism for MongoDB injection based on generating errors in the response.
Website Scanner: There's another out-of-band detector available for insecure deserializations. This included passive detection for serialized objects and deserialization attacks for Java serialized objects.
Network Scanner can now detect if CVE-2022-27518 (RCE in Citrix ADC & Gateway) impacts your targets.
Website Scanner: We've added an out-of-band detector for MySQL injections.