Ubiquiti Networks UniFi v3.2.10 Generic CSRF Protection Bypass

Posted by Julien Ahrens on Feb 25

RCE Security Advisory
https://www.rcesecurity.com

1. ADVISORY INFORMATION
———————–
Product: Ubiquiti Networks UniFi
Vendor URL: www.ubnt.com
Type: Cross-Site Request Forgery [CWE-353]
Date found: 2015-03-19
Date published: 2016-02-23
CVSSv3 Score: 6.3 (AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L)
CVE: –

2. CREDITS
———-
This vulnerability was discovered and researched by Julien Ahrens from
RCE…

Leave a Reply