What happened
A public source linked this CVE to an advisory or demonstration repository. Review the original reference before use.
Affected versions
Unknown product: See original advisory Fixed: See vendor advisory.
Why it matters
This source correlation may provide earlier visibility while structured CVE metadata is still being updated.
Detection & mitigation
- Review the original advisory and validate affected versions.
- Apply vendor-provided updates or mitigations when available.
Public PoC references
RepositoryAuthorFirst seenReference
Exploit-DB 45233OpenSSH 2.3 < 7.7 - Username EnumerationJustin Gardner2018-08-21VerifiedExploit-DB 45210OpenSSH 2.3 < 7.7 - Username Enumeration (PoC)Matthew Daley2018-08-16VerifiedExploit-DB 45939OpenSSH < 7.7 - User Enumeration (2)Leap Security2018-12-04VerifiedPoC-in-GitHub · trimstray/massh-enumOpenSSH 2.3 up to 7.4 Mass Username Enumeration (CVE-2018-15473).★ 159trimstray2018-08-17CandidatePoC-in-GitHub · gbonacini/opensshenumCVE-2018-15473 - Opensshenum is an user enumerator exploiting an OpenSsh bug★ 3gbonacini2018-08-19CandidatePoC-in-GitHub · Rhynorater/CVE-2018-15473-ExploitExploit written in Python for CVE-2018-15473 with threading and export formats★ 534Rhynorater2018-08-21CandidatePoC-in-GitHub · epi052/cve-2018-15473Multi-threaded, IPv6 aware, wordlists/single-user username enumeration via CVE-2018-15473★ 116epi0522018-10-03CandidatePoC-in-GitHub · pyperanger/CVE-2018-15473_exploitOpenSSH < 7.7 User Enumeration CVE-2018-15473 Exploit★ 0pyperanger2018-10-08CandidatePoC-in-GitHub · r3dxpl0it/CVE-2018-15473OpenSSH 7.7 - Username Enumeration★ 17r3dxpl0it2018-10-24CandidatePoC-in-GitHub · JoeBlackSecurity/SSHUsernameBruter-SSHUBFully functional script for brute forcing SSH and trying credentials - CVE-2018-15473★ 2JoeBlackSecurity2018-10-31CandidatePoC-in-GitHub · cved-sources/cve-2018-15473cve-2018-15473★ 1cved-sources2019-01-11CandidatePoC-in-GitHub · LINYIKAI/CVE-2018-15473-expThis is a exp of CVE-2018-15473★ 1LINYIKAI2019-01-23CandidatePoC-in-GitHub · trickster1103/-OpenSSH 用户名枚举漏洞(CVE-2018-15473)★ 0trickster11032019-06-19CandidatePoC-in-GitHub · NHPT/SSH-account-enumeration-verification-scriptSSH account enumeration verification script(CVE-2018-15473)★ 1NHPT2019-08-02CandidatePoC-in-GitHub · CaioCGH/EP4-redesCVE-2018-15473-Exploit★ 0CaioCGH2019-11-01CandidatePoC-in-GitHub · Moon1705/easy_securityProject with sublist3r, massan, CVE-2018-15473, ssh bruteforce, ftp bruteforce and nikto.★ 0Moon17052020-05-08CandidatePoC-in-GitHub · An0nYm0u5101/enumpossibleChecks a list of SSH servers for password-based auth availability and for the existence of SSH user enumeration vulnerability (CVE-2018-15473) in those identified.★ 0An0nYm0u51012020-08-03CandidatePoC-in-GitHub · Wh1t3Fox/cve-2018-15473★ 0Wh1t3Fox2020-09-02CandidatePoC-in-GitHub · 1stPeak/CVE-2018-15473★ 01stPeak2020-11-23CandidatePoC-in-GitHub · coollce/CVE-2018-15473_burteopenssh<7.7 用户名枚举★ 0coollce2020-11-26CandidatePoC-in-GitHub · Dirty-Racoon/CVE-2018-15473-py3★ 0Dirty-Racoon2020-11-27CandidatePoC-in-GitHub · Sait-Nuri/CVE-2018-15473OpenSSH 2.3 < 7.7 - Username Enumeration★ 42Sait-Nuri2020-11-29CandidatePoC-in-GitHub · WildfootW/CVE-2018-15473_OpenSSH_7.7★ 0WildfootW2020-12-09CandidatePoC-in-GitHub · MrDottt/CVE-2018-15473CVE-2018-15473 Exploit★ 3MrDottt2021-09-14CandidatePoC-in-GitHub · 66quentin/shodan-CVE-2018-15473Test CVE-2018-15473 exploit on Shodan IP★ 066quentin2021-12-11CandidatePoC-in-GitHub · 0xrobiul/CVE-2018-15473★ 10xrobiul2022-09-03CandidatePoC-in-GitHub · philippedixon/CVE-2018-15473★ 0philippedixon2023-01-01CandidatePoC-in-GitHub · sergiovks/SSH-User-Enum-Python3-CVE-2018-15473SSH User Enumerator in Python3, CVE-2018-15473, I updated the code of this exploit (https://www.exploit-db.com/exploits/45939) to work with python3 instead of python2.★ 4sergiovks2023-03-09CandidatePoC-in-GitHub · Anonimo501/ssh_enum_users_CVE-2018-15473★ 0Anonimo5012023-04-21CandidatePoC-in-GitHub · mclbn/docker-cve-2018-15473★ 1mclbn2023-05-05CandidatePoC-in-GitHub · GaboLC98/userenum-CVE-2018-15473User enumeration for CVE-2018-15473★ 0GaboLC982023-05-05CandidatePoC-in-GitHub · NestyF/SSH_Enum_CVE-2018-15473★ 0NestyF2023-11-02CandidatePoC-in-GitHub · yZee00/CVE-2018-15473Fix for CVE-2018-15473★ 0yZee002024-06-13CandidatePoC-in-GitHub · SUDORM0X/PoC-CVE-2018-15473FAFAF★ 0SUDORM0X2024-11-20CandidatePoC-in-GitHub · OmarV4066/SSHEnumKLSSHEnum es una herramienta de enumeración de usuarios SSH basada en CVE-2018-15473. Permite detectar usuarios válidos aprovechando respuestas diferenciadas del servidor. Es rápida, compatible con Python 3.12 y soporta wordlists. Uso exclusivo para auditoría y pruebas de seguridad autorizadas.★ 1OmarV40662025-02-09CandidatePoC-in-GitHub · 0xNehru/ssh_Enum_vaildA Bash script to enumerate valid SSH usernames using the CVE-2018-15473 vulnerability. It checks for valid usernames on an OpenSSH OpenSSH 7.2p2 server by analyzing authentication responses.★ 10xNehru2025-03-22CandidatePoC-in-GitHub · moften/cve-2018-15473-pocCheck if a username is valid on the SSH server by attempting an authentication. The server response will indicate whether the username exists.★ 0moften2025-03-25CandidatePoC-in-GitHub · makmour/open-ssh-user-enumerationThis script checks for the OpenSSH 7.7 (and prior) username enumeration vulnerability (CVE-2018-15473). It sends a malformed authentication packet and interprets the SSH server’s response to identify valid usernames.★ 0makmour2025-05-30CandidatePoC-in-GitHub · Alph4Sec/ssh_enum_pyscript de enumeración de usuarios SSH basado en diferencias de timing y respuestas de autenticación. Explota el mismo vector que CVE-2018-15473 en versiones vulnerables de OpenSSH (≤ 7.7), aunque también puede revelar patrones en configuraciones modernas.★ 0Alph4Sec2025-09-09CandidatePoC-in-GitHub · anonymous121029034720384234234/py-network-scannerAdvanced network penetration testing toolkit with SSH vulnerability assessment, CVE-2018-15473 exploitation, stealth brute force capabilities, and fail2ban evasion techniques. Professional-grade security testing framework for authorized penetration testing engagements.★ 1anonymous1210290347203842342342025-09-10CandidatePoC-in-GitHub · K3rn3l-32/Threaded-CVE-2018-15473A Python 3 reimplementation of the classic CVE-2018-15473 OpenSSH user enumeration exploit, extended with multi-threading, wordlist support, automatic vulnerability detection, and thread-safe exploit patching.★ 2K3rn3l-322026-03-25CandidatePoC-in-GitHub · wtbacon/cve-2018-15473★ 0wtbacon2026-03-31CandidatePoC-in-GitHub · kikechans/-SSH-Enum-CVE-2018-15473🛡️ SSH User Enumeration (CVE-2018-15473). Python 3, multihilo y calibración anti-falsos positivos. 🧵★ 0kikechans2026-04-02CandidatePoC-in-GitHub · kaktus5454/CVE-2018-15473python code for CVE-2018-15473, using paramiko★ 0kaktus54542026-04-05CandidatePoC-in-GitHub · bdalrhmnhamdalalm-jpg/CVE-2018-15473-User-Enumeration-python code use to check for user in ssh★ 0bdalrhmnhamdalalm-jpg2026-08-04CandidateSource timeline
Discovered through Exploit-DBView source ↗
Record history
Record created from the first normalized source observation.
Metadata and source references refreshed.