
Scanner Python leve que identifica servidores vulneráveis ao regreSSHion do OpenSSH (CVE-2024-6387) por meio de recuperação rápida de banner em IPs, domínios e intervalos CIDR com multithreading.
CVE-2024-6387_Check é uma ferramenta leve e eficiente projetada para identificar servidores que executam versões vulneráveis do OpenSSH, visando especificamente a vulnerabilidade regreSSHion recém-descoberta (CVE-2024-6387). Este script facilita a varredura rápida de múltiplos endereços IP, nomes de domínio e intervalos de rede CIDR para detectar possíveis vulnerabilidades e garantir a segurança da sua infraestrutura.
python CVE-2024-6387_Check.py <targets> [--port PORT] [--timeout TIMEOUT] [--list FILE]
python CVE-2024-6387_Check.py 192.168.1.1
python CVE-2024-6387_Check.py -l ip_list.txt
python CVE-2024-6387_Check.py 192.168.1.1 example.com 192.168.1.2
python CVE-2024-6387_Check.py 192.168.1.0/24
python CVE-2024-6387_Check.py 192.168.1.1 example.com --port 2222
O script fornecerá um resumo dos alvos verificados:
🛡️ Servers not vulnerable: 2
[+] Server at somedomain.cloudapp.azure.com (running SSH-2.0-OpenSSH_8.2p1 Ubuntu-4ubuntu0.11)
[+] Server at regresshion_test.cc (running SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.3)
🚨 Servers likely vulnerable: 1
[+] Server at 4.231.170.122 (running SSH-2.0-OpenSSH_9.2p1 Debian-2+deb12u2)
⚠️ Servers with unknown SSH version: 1
[+] Server at 103.97.85.85 (banner: SSH-2.0-ROSSSH)
🔒 Servers with port 22 closed: 254
📊 Total scanned targets: 257