module
GLPI htmLawed php command injection
Disclosed | Created |
---|---|
Jan 26, 2022 | Oct 24, 2022 |
Disclosed
Jan 26, 2022
Created
Oct 24, 2022
Description
This exploit takes advantage of a unauthenticated php command injection available
from GLPI versions 10.0.2 and below to execute a command.
from GLPI versions 10.0.2 and below to execute a command.
Authors
cosad3s
bwatters-r7
bwatters-r7
Platform
Linux
Architectures
x64, cmd
References
Module Options
To display the available options, load the module within the Metasploit console and run the commands 'show options' or 'show advanced':

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.