Directory Traversal Vulnerability in Toshiba Bluetooth Stack
CVE-2006-0212

Currently unrated

Key Information:

Vendor
Toshiba
Vendor
CVE Published:
14 January 2006

Summary

The Toshiba Bluetooth Stack is susceptible to a directory traversal vulnerability in its OBEX Push services. This flaw permits remote attackers to upload files to arbitrary locations by employing crafted '..' sequences. Consequently, an attacker can manipulate the RFILE argument in ussp-push to perform unauthorized file uploads, posing significant security risks to users of Toshiba devices relying on this stack.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.