← Back

CVE-2006-0212

nvd nist
Published: Jan 14, 2006Modified: Apr 16, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:P/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

Directory traversal vulnerability in OBEX Push services in Toshiba Bluetooth Stack 4.00.23(T) and earlier allows remote attackers to upload arbitrary files to arbitrary remote locations specified by .. (dot dot) sequences, as demonstrated by ..\\ sequences in the RFILE argument of ussp-push.

Affected (13)

1 product
Bluetooth Stack
Configuration A
13 vulnerable
Vulnerable SoftwareAffected Versions
Toshiba
Up to 4.00.23t
Version 3.00.11
Version 3.00.12
Version 3.00.31a
Version 3.00.32
Version 3.01.03
Version 3.10.00
Version 3.20.00
Version 3.20.01
Version 3.20.02
Version 3.20.04
Version 4.00.01t
Version 4.00.11

References (18)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
ExploitVendor Advisory
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.