GitPedia

Aemscan

Adobe Experience Manager Vulnerability Scanner

From Raz0r·Updated June 5, 2026·View on GitHub·

https://raz0r.name/releases/adobe-experience-manager-vulnerability-scanner/ The project is written primarily in Python, distributed under the MIT License license, first published in 2018. Key topics include: aem, scanner, vulnerability, web.

Build Status

aemscan

Adobe Experience Manager Vulnerability Scanner

https://raz0r.name/releases/adobe-experience-manager-vulnerability-scanner/

Features

  • Default credentials bruteforce
  • Info leak via default error page
  • WebDav support check (WebDav OSGI XXE CVE-2015-1833)
  • Version detection
  • Useful paths scanner

Installation

$ python setup.py install

Usage

$ aemscan <url>

TODO

  • CVE-2016-0956 "Apache Sling Framework 2.3.6 Information Disclosure"
  • CVE-2018-5006, CVE-2018-12809 "Adobe Experience Manager Server-Side Request Forgery"

Contributors

Showing top 6 contributors by commit count.

View all contributors on GitHub →

This article is auto-generated from Raz0r/aemscan via the GitHub API.Last fetched: 6/24/2026