A small writeup on CVE-2013-3572
Quite a while ago I got to toy around with some ubiquiti UAP Pros, awesome, cheap, performant WiFi Access Points. As I missed the last train home from my hackerspace I began to toy around, always on the hunt for a little exploit. Webinterface Exploits(XSS, SQL Injections or what so ever) were easily found, but that’s not what I was looking for. Everyone can do that. The goal was to find something nobody has done before. So, as I came across the users tab, I noticed the following: ...