Filtered by vendor Toshiba
Subscribe
Total
31 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2014-4875 | 1 Toshiba | 1 Chec | 2024-11-21 | 5.0 MEDIUM | N/A |
CreateBossCredentials.jar in Toshiba CHEC before 6.6 build 4014 and 6.7 before build 4329 contains a hardcoded AES key, which allows attackers to discover Back Office System Server (BOSS) DB2 database credentials by leveraging knowledge of this key in conjunction with bossinfo.pro read access. | |||||
CVE-2012-4981 | 1 Toshiba | 1 Configfree | 2024-11-21 | 6.8 MEDIUM | 8.8 HIGH |
Toshiba ConfigFree 8.0.38 has a CF7 File Remote Command Execution Vulnerability | |||||
CVE-2012-4980 | 1 Toshiba | 1 Configfree Utility | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
Multiple stack-based buffer overflows in CFProfile.exe in Toshiba ConfigFree Utility 8.0.38 allow user-assisted attackers to execute arbitrary code. | |||||
CVE-2009-0657 | 1 Toshiba | 1 Face Recognition | 2024-11-21 | 6.9 MEDIUM | N/A |
Toshiba Face Recognition 2.0.2.32 allows physically proximate attackers to obtain notebook access by presenting a large number of images for which the viewpoint and lighting have been modified to match a stored image of the authorized notebook user. | |||||
CVE-2008-0399 | 1 Toshiba | 1 Surveillix | 2024-11-21 | 6.8 MEDIUM | N/A |
Multiple buffer overflows in Toshiba Surveillance (Surveillix) RecordSend ActiveX control (MeIpCamX.DLL 1.0.0.4) allow remote attackers to execute arbitrary code via long arguments to the (1) SetPort and (2) SetIpAddress methods. | |||||
CVE-2006-6903 | 1 Toshiba | 1 Bluetooth | 2024-11-21 | 10.0 HIGH | N/A |
Unspecified vulnerability in the Toshiba Bluetooth stack allows remote attackers to gain administrative access (aka Remote Root) via unspecified vectors. | |||||
CVE-2006-5611 | 1 Toshiba | 1 Bluetooth Stack | 2024-11-21 | 10.0 HIGH | N/A |
Unspecified vulnerability in Toshiba Bluetooth Stack before 4.20.01 has unspecified impact and attack vectors, related to the 4.20.01(T) "Security fix." NOTE: due to the lack of details in the vendor advisory, it is not clear whether this issue is related to CVE-2006-5405. | |||||
CVE-2006-5405 | 1 Toshiba | 1 Bluetooth Wireless Device Driver | 2024-11-21 | 6.2 MEDIUM | N/A |
Unspecified vulnerability in Toshiba Bluetooth wireless device driver 3.x and 4 through 4.00.35, as used in multiple products, allows physically proximate attackers to cause a denial of service (crash), corrupt memory, and possibly execute arbitrary code via crafted Bluetooth packets. | |||||
CVE-2006-3146 | 2 Microsoft, Toshiba | 2 Windows, Bluetooth Stack | 2024-11-21 | 5.0 MEDIUM | N/A |
The TOSRFBD.SYS driver for Toshiba Bluetooth Stack 4.00.29 and earlier on Windows allows remote attackers to cause a denial of service (reboot) via a L2CAP echo request that triggers an out-of-bounds memory access, similar to "Ping o' Death" and as demonstrated by BlueSmack. NOTE: this issue was originally reported for 4.00.23. | |||||
CVE-2006-0212 | 1 Toshiba | 1 Bluetooth Stack | 2024-11-21 | 5.0 MEDIUM | N/A |
Directory traversal vulnerability in OBEX Push services in Toshiba Bluetooth Stack 4.00.23(T) and earlier allows remote attackers to upload arbitrary files to arbitrary remote locations specified by .. (dot dot) sequences, as demonstrated by ..\\ sequences in the RFILE argument of ussp-push. | |||||
CVE-2005-0963 | 1 Toshiba | 1 Acpi Flash Bios | 2024-11-20 | 2.1 LOW | N/A |
An error in the Toshiba ACPI BIOS 1.6 causes the BIOS to only examine the first slot in the Master Boot Record (MBR) table for an active partition, which prevents the system from booting even though the MBR is not malformed. NOTE: it has been debated as to whether or not this issue poses a security vulnerability, since administrative privileges would be required, and other DoS attacks are possible with such privileges. |