Sploitus

Exploit for Race Condition in Openbsd Openssh

githubexploit Β· 2023-03-09

Exploit Code

README24 lines
## https://sploitus.com/exploit?id=FD18B68B-C0A6-562E-A8C8-781B225F15B0
# SSH-User-Enum-Python3-CVE-2018-15473

SSH User Enumerator in Python3, CVE-2018-15473, I've updated the code of this exploit (https://www.exploit-db.com/exploits/45939) to work with python3 instead of python2, and I'm trying to implement functionalities to enumerate more users instead of only one.

OpenSSH 

sshuserenum3.py

Works fine, how to use:

```
python3 sshuserenum3.py 10.10.10.84 -p 22 root

IP = positional argument
-p to specify the SSH port
user(for example root) to try the existence of a user (positional argument)
```

casi.py

```
TO DO, STILL NOT DONE, Trying to implement a wordlist function.
```