What are some reliable programs to help me find vulnerabilities in my website?
i can recommend you the use of Gamasec’s web application vulnerability Scanning does automated search for security weaknesses in web applications and produces a detailed security report with recommendations for optimally matched solutions. www.gamasec.com
GamaSec identifies application vulnerabilities ( e.g. Cross Site Scripting (XSS), SQL injection, Code Inclusion etc.. ) as well as site exposure risk, ranks threat priority, produces highly graphical, intuitive HTML reports, and indicates site security posture by vulnerabilities and threat exposure.
they also have a free trial option that provid you with partial report mean the vulnerabilities with out the technical recommendation but after it you can buy the report for only $99
Security isn't really my area, and "website vulnerability scanner" could encompass a lot of things, including detecting vulnerabilities in the operating system , the server software, and any software you built yourself. Anyway, our organization has used the Nessus scanner for some of these sorts of things for several years.
Yes in did we were please with the service quality of the GamaSec report and the flexibility of the on demand scan schedule especialy for anual price of $600 with 12 monthly scan report and differential report after the second report
You should also try nikto2. It will search through default open cgi scripts. http://cirt.net/nikto2