GLPI Active Scanner
GLPIScan is a scanner to find vulnerabilities into glpi platforms. GLPI is usually used internally, almost never you'll find opened to the internet ( but is possible ).
GLPI is an incredible ITSM software tool that helps you plan and manage IT changes in an easy way, solve problems efficiently when they emerge and allow you to gain legitimate control over your company’s IT budget, and expenses.
- Misconfiguration
- User Enumeration
- SQL dumps ( it's possible to clone the target) TODO!
- Default credentials TODO!
- Vulnerable versions
- System information as OS and Web Server
git clone https://github.com/Kitsun3Sec/glpiscan.git
cd glpiscan
bundle install
./glpiscan.rb TARGET