In Progress GSM Code (USSD) Exploit

Jun 28, 2012
Device: Motorola Razr XT910 GSM
MIUI Version 2.9.14

Just wanted to point out that the USSD exploit found on the Samsung Galaxy S2 today (tldr: browser/dialler design flaw that allows GSM Service Codes to be run with no confirmation on opening a website) is working on my phone. I've not tried any of the "abusable" codes (such as factory reset, call forwarding etc), but with the harmless *#06# (Display IMEI) it immediately executes. Not sure if this is fixed in 2.9.21, but I thought it'd be worth pointing out.