Softpedia
 

WINDOWS CATEGORIES:



GLOBAL PAGES >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
WEEK'S BEST
  • Bitdefender Total ...
  • Ocster Backup Pro ...
  • Hard Disk Sentinel...
  • FlashFXP [DISCOUNT...
  • DVDFab DVD Copy [D...
  • Kaspersky Internet...
  • Avast! Internet Se...
  • Avira Internet Sec...
  • Webroot SecureAnyw...
  • McAfee Total Prote...
  • 7-DAY TOP DOWNLOAD
    #
    Program
    Nero 9 Free 9.4.12.3
    26,906 downloads
    Samsung PC Studio
    7.2.24.9

    23,726 downloads
    UMPlayer 0.98
    21,134 downloads
    Adobe Flash Player
    11.7.700.202 /
    11.8.800.50 Beta

    20,241 downloads
    Internet Download
    Manager 6.15 Build
    12

    19,592 downloads
    Nokia PC Suite
    7.1.180.94

    17,518 downloads
    Adobe Photoshop CS6
    13.0.1.1

    15,428 downloads
    LibreOffice 4.0.3
    14,681 downloads
    HP USB Disk Storage
    Format Tool 2.2.3

    14,186 downloads
    Google Chrome
    26.0.1410.64 Stable
    / 27.0.1453.81 Beta
    / 28.0.1500.11 Dev

    13,984 downloads
    Home > Windows > Internet > WEB Design > Source & Site Protectors > Acunetix Web Vulnerability Scanner > Changelog

    Acunetix Web Vulnerability Scanner 8.0 Build 20121213 - Changelog


    What's new in Acunetix Web Vulnerability Scanner 8.0 Build 20121213:

    January 9th, 2013

    New Features:
    · New report template for ISO 27001

    New Security Checks:
    · During a scan Acunetix WVS checks if the MongoDB web interface is open on the external interface
    · Check for included scripts which are from an invalid hostname
    · Added a new module for testing Slow HTTP Denial of Service attacks like Slowloris
    · Added a new security check that tries to guess various internal virtual hosts (information disclosure)
    · Checks for phpLiteAdmin default passwords

    Improvements:
    · Improved the SQL Injection detection for SQLite3
    · Further improved the Cross-Site Scripting security check
    · Added detailed descriptions to all the Acunetix WVS security scripts
    · Removed all broken web references in vulnerability reports and added several new ones
    · Improved the Joomla! security scripts for more enhanced security scanning of Joomla! portals

    Bug Fixes:
    · Fixed a text wrapping issue in the compliance reports
    · Fixed an issue where the CSA engine was being executed multiple times against the same file during a scan
    · User-Agent header is now included with the in-session check request
    · Login Sequence Recorder now uses the timeout value specified from settings
    · Fixed several crashes when the Login Sequence Recorder was used against some specific websites



    What's new in Acunetix Web Vulnerability Scanner 8.0 Build 20120508:

    May 8th, 2012

    New Security Check:
    · Acunetix WVS 8 checks if your PHP-CGI installation is vulnerable to remote code execution. For further information regarding this type of vulnerability, read the PHP-CGI advisory article here.

    New Features:
    · Ability to edit scheduled scans. No need for scheduling new scans every time you wish to change a scan setting.
    · Amend multiple scheduled scans simultaneously by selecting them and applying the required global changes.
    · Save all your scanned results and access them at any time from your scheduler’s scan history. You can also delete your scanned results from the web-based scheduler.
    · A new setting has been introduced to configure the maximum number of pages during a crawl.

    Improvements:
    · Improved Cross-Site Scripting (XSS) tests.
    · The web-based scheduler has been improved to run better in the latest version of Internet Explorer.
    · Enhanced SQL injection tests to reduce the false positives reporting even more.

    Bug Fixes:
    · The scheduled scans can be correctly imported after upgrading to a more recent build of Acunetix WVS 8.
    · The false positives settings node can now support changes from multiple instances at the same time.
    · Web Service Definition Language (WSDL) Scanner URL edit box is now able to save history.



    What's new in Acunetix Web Vulnerability Scanner 8.0 Build 20120423:

    April 26th, 2012

    · Automatic verification of discovered web vulnerabilities.



    What's new in Acunetix Web Vulnerability Scanner 8.0 Build 20120326:

    April 26th, 2012

    New Security Checks:
    · Acunetix WVS 8 runs security tests for Joomla 1.6.x/1.7.x/2.5.x Privilege Escalation
    · Acunetix WVS 8 provides security tests Joomla 1.7/2.5 Core SQL Injection

    Improvements:
    · More advanced security checks for MongoDB and Rails Mass Assignment.

    Bug Fixes:
    · The crash in the Login Sequence Recorder has been fixed.
    · The Login Sequence Recorder is accurately parsing websites which send back GZIP encoded content, even if it was not specified in the Accept-Encoding header.
    · The Acunetix Reporter has improved the handling of missing scans reports.
    · The Acunetix Reporter Console supports spaces within the specified parameters.
    · The Acunetix Reporter accepts longer input names.



    What's new in Acunetix Web Vulnerability Scanner 8.0 Build 20120305:

    April 26th, 2012

    New Security Checks:
    · Scanning of Web Statistics Software Applications such as AWStats and Webalizer. Acunetix WVS crawls the result pages of your website(s) statistics software application and notifies you if sensitive data is disclosed in such pages.
    · Automatic checks for ASP Code injection vulnerability.
    · Further security checks for SQLite Databases.
    · Security checks for Rails Mass Assignment.

    New Features:
    · Ability to stop the website crawling and proceed with the scan at anytime.
    · Posibility to choose a scan report template that you would like to use when scheduling a scan.

    Improvements:
    · Scripts are being executed faster thus the scans are taking less time to complete.
    · Improved security scripts for Blind SQL injection, Remote File Inclusion XSS, File Inclusion and Directory Traversal.
    · If a variant check for a specific vulnerability times out, the next variant checks assigned for that type of vulnerability will be launched automatically.

    Bug fixes:
    · Crawler: input encoding was not correct for _EVENTTARGET = and /
    · Ansi string was not working correctly when using specific languages other than English.



    What's new in Acunetix Web Vulnerability Scanner 7.0 Build 20101216:

    January 5th, 2011

    New features:
    · DOM XSS will now report the filename in which the attack was executed
    · DOM XSS checks on document.open, window.open, window.navigate and more

    Bug fixes:
    · Fixed: Aborting analysis while executing events not always worked in CSA
    · Fixed: CSA engine crashing with “worker already executing” exception
    · Fixed: Crawler was not considering maximum number of variations in case of links from comments
    · Fixed: In some cases during a WSDL service scan, port address query params where not properly used
    · Fixed: False positive for ASP.NET padding oracle test
    · Bugfix: HTML parser; Fixed regex for extracting URLs from HTML comments



    What's new in Acunetix Web Vulnerability Scanner 6.5 Build 20100203:

    February 9th, 2010

    New security checks:
    · 8.3 DOS filename source code disclosure
    · Apache Tomcat Directory Host Appbase authentication bypass vulnerability
    · Apache Tomcat WAR File directory traversal vulnerability
    · Apache stronghold-info enabled
    · Apache stronghold-status enabled
    · ColdFusion 9 Solr Service exposed
    · Error page path disclosure
    · Error page web server version disclosure
    · File inclusion RFI list
    · Checks for multiple vulnerabilities in XAMPP
    · Server-Side Includes (SSI) injection on Unix
    · Server-Side Includes (SSI) injection on Windows
    · ASP.NET error messages when requesting URL like |.aspx

    Improvements:
    · Added more variants to FCKeditor arbitrary file upload
    · Updated cross site scripting in path security checks
    · Updated directory listing security checks
    · Updated directory traversal on Unix security checks
    · Updated file upload security checks
    · Updated LDAP injection security checks
    · Updated possible sensitive files security checks
    · Updated XPath injection security checks

    Bug Fixes:
    · Workaround for window.open used with NULL parameter
    · Notify elements that they are unbidden
    · Notify form if an input was removed
    · Include select element values in submitted data
    · Fixed: HttpProt was sending content length with CONNECT
    · Fixed: Crawler didn't consider post data for links from CSA engine; some where ignored
    · Fixed: Login sequence recorder was sending requests synchronously



    What's new in Acunetix Web Vulnerability Scanner 6.0 Build 20081028:

    October 31st, 2008

    · New Revolutionary AcuSensor Technology for more accurate results
    · New Blind SQL Injector Tool New Port Scanner and Network Alerts
    · Further customization of false positives possible
    · Generates list of uncommon HTTP responses
    · Scans websites with NTLMv2 authentication



    What's new in Acunetix Web Vulnerability Scanner 5.0 build 70604:

    June 15th, 2007

    · Compliance Reports Templates: OWASP, PCI, Sarbanes-Oxley, HIPAA ..
    · New Web services tools
    · New subdomain scanner tool
    · New test for stored XSS
    · Manual Choice of Files from the Site Structure before scanning
    · Mail Notifications from scheduler




    WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

    SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM