GLPI automatic exploitation tool for CVE-2020-15175
GLPwn A GLPI hack tool, using Apache directory listing and / or CVE-2020-15175 to dump files and valid sessions Who is vulnerable? Any GLPI instance that has Apache directory listing already enabled on the /files folder All GLPI instances prior to 951 running on a default Apache2 server What can it do? GLPwn is able to dump all files inside the GLPI /files folder, which i