CVE-2015-0884

Unquoted Windows search path vulnerability in Toshiba Bluetooth Stack for Windows before 9.10.32(T) and Service Station before 2.2.14 allows local users to gain privileges via a Trojan horse application with a name composed of an initial substring of a path that contains a space character.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:toshiba:bluetooth_stack:9.10.27\(t\):*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:toshiba:service_station:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:23

Type Values Removed Values Added
References () http://jvn.jp/vu/JVNVU99205169/index.html - () http://jvn.jp/vu/JVNVU99205169/index.html -
References () http://www.kb.cert.org/vuls/id/632140 - Third Party Advisory, US Government Resource () http://www.kb.cert.org/vuls/id/632140 - Third Party Advisory, US Government Resource
References () http://www.securitytracker.com/id/1031825 - () http://www.securitytracker.com/id/1031825 -
References () http://www.support.toshiba.com/sscontent?contentId=4007185 - () http://www.support.toshiba.com/sscontent?contentId=4007185 -
References () http://www.support.toshiba.com/sscontent?contentId=4007187 - () http://www.support.toshiba.com/sscontent?contentId=4007187 -

Information

Published : 2015-02-28 02:59

Updated : 2024-11-21 02:23


NVD link : CVE-2015-0884

Mitre link : CVE-2015-0884

CVE.ORG link : CVE-2015-0884


JSON object : View

Products Affected

microsoft

  • windows

toshiba

  • service_station
  • bluetooth_stack