CVE-2006-0212

Currently unrated

Key Information:

Vendor
Toshiba
Vendor
CVE Published:
14 January 2006

Summary

Directory traversal vulnerability in OBEX Push services in Toshiba Bluetooth Stack 4.00.23(T) and earlier allows remote attackers to upload arbitrary files to arbitrary remote locations specified by .. (dot dot) sequences, as demonstrated by ..\ sequences in the RFILE argument of ussp-push.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.