Directory traversal vulnerability in OBEX Push services in Toshiba Bluetooth Stack 4.00.23(T) and earlier allows remote attackers to upload arbitrary files to arbitrary remote locations specified by .. (dot dot) sequences, as demonstrated by ..\\ sequences in the RFILE argument of ussp-push.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/421993/100/0/threaded | mailing list |
http://aps.toshiba-tro.de/bluetooth/pages/driverinfo.php?txt=sp2 | |
http://www.securityfocus.com/bid/16236 | vdb entry |
http://www.vupen.com/english/advisories/2006/0184 | vdb entry |
http://secunia.com/advisories/18437 | third party advisory vendor advisory |
http://www.digitalmunition.com/DMA%5B2006-0112a%5D.txt | exploit vendor advisory |
http://www.osvdb.org/22380 | vdb entry |
http://marc.info/?l=full-disclosure&m=113712413907526&w=2 | mailing list |
http://securitytracker.com/id?1015486 | vdb entry |