TP-Link Camera uploadfile Unauthenticated File Upload Exploit

This module exploits an unauthenticated file upload vulnerability on TP-Link IP cameras. Due to improper access restrictions, it is possible for a remote unauthenticated attacker to upload an arbitrary file to the /mnt/mtd directory on the camera by issuing a POST request against the file /cgi-bin/uploadfile.
Wednesday, October 16, 2013 - 00:00