Directory Traversal Vulnerability in Toshiba Bluetooth Stack
CVE-2006-0212

Currently unrated

Key Information:

Vendor

Toshiba

Vendor
CVE Published:
14 January 2006

What is CVE-2006-0212?

The Toshiba Bluetooth Stack is susceptible to a directory traversal vulnerability in its OBEX Push services. This flaw permits remote attackers to upload files to arbitrary locations by employing crafted '..' sequences. Consequently, an attacker can manipulate the RFILE argument in ussp-push to perform unauthorized file uploads, posing significant security risks to users of Toshiba devices relying on this stack.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.