
Scanner leggero in Python che identifica server vulnerabili a OpenSSH regreSSHion (CVE-2024-6387) tramite recupero rapido del banner su IP, domini e intervalli CIDR con multi-threading.
CVE-2024-6387_Check è uno strumento leggero ed efficiente progettato per identificare server che eseguono versioni vulnerabili di OpenSSH, mirando specificamente alla recentemente scoperta vulnerabilità regreSSHion (CVE-2024-6387). Questo script facilita la scansione rapida di più indirizzi IP, nomi di dominio e intervalli di rete CIDR per rilevare potenziali vulnerabilità e garantire che la tua infrastruttura sia sicura.
python CVE-2024-6387_Check.py <targets> [--port PORT] [--timeout TIMEOUT] [--list FILE]
python CVE-2024-6387_Check.py 192.168.1.1
python CVE-2024-6387_Check.py -l ip_list.txt
python CVE-2024-6387_Check.py 192.168.1.1 example.com 192.168.1.2
python CVE-2024-6387_Check.py 192.168.1.0/24
python CVE-2024-6387_Check.py 192.168.1.1 example.com --port 2222
Lo script fornirà un riepilogo dei target scansionati:
🛡️ Servers not vulnerable: 2
[+] Server at somedomain.cloudapp.azure.com (running SSH-2.0-OpenSSH_8.2p1 Ubuntu-4ubuntu0.11)
[+] Server at regresshion_test.cc (running SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.3)
🚨 Servers likely vulnerable: 1
[+] Server at 4.231.170.122 (running SSH-2.0-OpenSSH_9.2p1 Debian-2+deb12u2)
⚠️ Servers with unknown SSH version: 1
[+] Server at 103.97.85.85 (banner: SSH-2.0-ROSSSH)
🔒 Servers with port 22 closed: 254
📊 Total scanned targets: 257