# test502git/awvs14-scan

针对 Acunetix AWVS扫描器开发的批量扫描脚本，支持log4j漏洞、SpringShell、SQL注入、XSS、弱口令等专项，支持联动xray、burp、w13scan等被动批量

Repository: https://github.com/test502git/awvs14-scan
Canonical: https://ross.abutalabs.com/products/awvs14-scan
Language: Python
License Family: other
Last push: 2025-08-05T17:29:04+00:00

## Health v2 (maintenance only)
Score: 48/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 35, release rhythm 35, longevity 100
- inputs: {"age_days": 2233, "days_push": 393, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases, no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1318, forks 216 (observed 2026-08-28T04:04:21.191953+00:00)

## What it is
A Python batch-scanning script built on the Acunetix (AWVS) 14/15 API that automates bulk URL scanning with specialized templates for log4j, Spring4Shell, SQL injection, XSS, weak passwords, and common CVEs. It can chain with passive scanners like xray, burp, and w13scan via an upstream proxy and supports custom scan templates through config.ini.

## Use cases
- bulk scan a list of urls with awvs
- scan for log4shell vulnerabilities across many targets
- batch detect sql injection and xss
- check weak passwords on multiple sites
- chain awvs with xray or w13scan passive scanning
- scan for spring4shell cve-2022-22965
- clean up all scan tasks in awvs
- add cookies and custom headers for authenticated crawling

## When to choose
- you already run AWVS 14/15 and need to automate bulk scans
- you want specialized scans for log4j, Spring4Shell, or bug bounty high-frequency vulns
- you need to combine AWVS crawling with passive scanners like xray or burp

## When to avoid
- you don't have an AWVS 14/15 installation or its API
- you need a standalone vulnerability scanner without Acunetix
- you require a project with an explicit license for commercial use

## Facets
- artifact type: cli-tool
- maturity: active
- function: penetration-testing, vulnerability-scanning, security, cli
- domain: security, penetration-testing, developer-tools
- platform: python, cli
- tags: awvs, acunetix, batch-scanning, log4j, spring4shell, sql-injection, xss, xray, w13scan, burp, passive-scanning, linux, docker

## Member repositories
- test502git/awvs14-scan (main) score 48

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:04:21.191953+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T04:48:10.286129+00:00, confidence not recorded.
  - readme: https://github.com/test502git/awvs14-scan (fetched 2026-08-28T04:04:21.191953+00:00, sha 569c2c314c48)
- Data as of 2026-08-30T08:39:29.467469+00:00.
