Is COMODO able to detect iframes injected into websites?
Can/Does it fall under the scope of CIS?

AFAIK It does not.
User scripts, script blockers and other such as (maybe some adblockers, “bug” detectors (ghostery for one) , proxies such as privoxy or adguard, or even manually reading the html or element sheet, etc) would do this for you.
Usual problem is the https (or encrypted protocol) has to de-encrypted before the files or headers can be properly read to determine the content. Most software firewalls do not do this - hence the firewall that did web filtering and web content detection are either gone or stopped having this feature.