
指定されたSSHサーバーのリストに対して、パスワードベースの認証が利用可能かどうか、およびCVE-2018-15473のSSHユーザー列挙脆弱性が存在するかをチェックします。
@LeapSecurity による https://www.exploit-db.com/exploits/45939 のわずかに修正されたバージョンを使用して、CVE-2018-15473をチェックします。
スクリーンショット
git clone https://github.com/securemode/enumpossible.git
ip:port形式のサーバーリストを読み込みます:
# ./enumpossible.sh servers.txt