Directory Traversal Vulnerability in Toshiba Bluetooth Stack
CVE-2006-0212
Currently unrated
Summary
The Toshiba Bluetooth Stack is susceptible to a directory traversal vulnerability in its OBEX Push services. This flaw permits remote attackers to upload files to arbitrary locations by employing crafted '..' sequences. Consequently, an attacker can manipulate the RFILE argument in ussp-push to perform unauthorized file uploads, posing significant security risks to users of Toshiba devices relying on this stack.
References
Timeline
Vulnerability published
Vulnerability Reserved