March 2017 Summaries
2 posts from Detectify
Filter
Month:
Year:
Post Summaries
Back to Blog
Detectify's latest update includes new security tests that enhance its ability to identify vulnerabilities, focusing on a range of issues affecting platforms such as WordPress, Joomla!, and CKEditor. The update addresses specific vulnerabilities such as remote code execution (RCE), cross-site scripting (XSS), and SQL injection, targeting various plugins and components within these platforms. Additionally, the update includes checks for AWS S3CMD header information disclosure and other publicly exposed modules like Lynk Zipper, ensuring comprehensive coverage of potential security threats.
Mar 23, 2017
100 words in the original blog post.
Detectify has been updated with new security tests to enhance its ability to identify and manage emerging threats effectively. The latest release includes tests for various vulnerabilities such as cross-site scripting (XSS) and SQL injection across popular platforms like WordPress, Joomla!, and Drupal. Specific vulnerabilities addressed include XSS in WordPress plugins like NextGEN, soundcloud-is-gold, and userpro, as well as SQL injection issues in multiple Joomla! components such as com_news, com_publication, and com_filecabinet. Additional security checks include exposure of the SSH private key and open access in PHPSysInfo, error log disclosure in Drupal, and XSS vulnerabilities in myDBR and Jobportals, ensuring comprehensive coverage for detecting potential security risks.
Mar 15, 2017
92 words in the original blog post.