ubiquiti

1 article
sort: new top best
clear filter
0 8/10

Ubiquiti UniFi v3.2.10 and below contains a generic CSRF protection bypass that strips the Referer header, allowing attackers to perform unauthorized actions like changing user passwords, adding new users, and creating WLAN configurations. The exploit uses enctype='text/plain', iframe source manipulation, and JavaScript to strip the Referer header and submit JSON-based CSRF attacks.

Ubiquiti UniFi v3.2.10 HackerOne MITRE Julien Ahrens RCE Security OSVDB
rcesecurity.com · devanshbatham/Awesome-Bugbounty-Writeups · 12 hours ago · details