BigAntSoft kayıtları
bigantsoft üreticisine ait 17 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 4 · %23,5
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer4
- CWE-434 Unrestricted Upload of File with Dangerous Type2
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-288 Authentication Bypass Using an Alternate Path or Channel1
- CWE-306 Missing Authentication for Critical Function1
- CWE-311 Missing Encryption of Sensitive Data1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
17 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
62Bu hafta | CVE-2008-1914Silahlaştırılmış | Stack-based buffer overflow in the AntServer module (AntServer.exe) in BigAnt IM Server in BigAnt Messenger 2.2 allows remote attackers to ebigantsoft · bigant messenger · CWE-119 | Kritik10,0 | — | %73,7 | 22 Nis 2008 |
59Planlayın | CVE-2009-4660Silahlaştırılmış | Stack-based buffer overflow in the AntServer Module (AntServer.exe) in BigAnt IM Server 2.50 allows remote attackers to execute arbitrary cobigantsoft · bigant messenger · CWE-119 | Kritik10,0 | — | %62,7 | 3 Mar 2010 |
54Planlayın | CVE-2012-6275Silahlaştırılmış | Multiple stack-based buffer overflows in AntDS.exe in BigAntSoft BigAnt IM Message Server allow remote attackers to have an unspecified impabigantsoft · bigant im message server · CWE-119 | Kritik10,0 | — | %46,5 | 24 Şub 2013 |
40Planlayın | CVE-2025-0364Kavram kanıtı | BigAntSoft BigAnt Server Account Registration Bypass to File Upload RCEbigantsoft · bigant server · CWE-288 | Kritik9,8 | — | %1,9 | 4 Şub 2025 |
35İzleyin | CVE-2022-23346İstismar yok | BigAnt Software BigAnt Server v5.6.06 was discovered to contain incorrect access control issues.bigantsoft · bigant server · CWE-434 | Yüksek8,8 | — | %1,4 | 21 Mar 2022 |
35İzleyin | CVE-2021-43430İstismar yok | An Access Control vulnerability exists in BigAntSoft BigAnt office messenger 5.6 via im_webserver, which could let a malicious user upload Pbigantsoft · bigant office messenger 5 · CWE-434 | Yüksek8,8 | — | %1,1 | 7 Nis 2022 |
35İzleyin | CVE-2022-23349İstismar yok | BigAnt Software BigAnt Server v5.6.06 was discovered to contain a Cross-Site Request Forgery (CSRF).bigantsoft · bigant server · CWE-352 | Yüksek8,8 | — | %0,7 | 21 Mar 2022 |
34İzleyin | CVE-2012-6274Silahlaştırılmış | BigAntSoft BigAnt IM Message Server does not require authentication for file uploading, which allows remote attackers to create arbitrary fibigantsoft · bigant im message server · CWE-287 | Orta5,0 | — | %46,9 | 24 Şub 2013 |
34İzleyin | CVE-2022-23347Kavram kanıtı | BigAnt Software BigAnt Server v5.6.06 was discovered to be vulnerable to directory traversal attacks.bigantsoft · bigant server · CWE-22 | Yüksek7,5 | — | %13,5 | 21 Mar 2022 |
30İzleyin | CVE-2022-23352İstismar yok | An issue in BigAnt Software BigAnt Server v5.6.06 can lead to a Denial of Service (DoS).bigantsoft · bigant server · CWE-835 | Yüksek7,5 | — | %1,6 | 21 Mar 2022 |
30İzleyin | CVE-2022-23345İstismar yok | BigAnt Software BigAnt Server v5.6.06 was discovered to contain incorrect access control.bigantsoft · bigant server · CWE-306 | Yüksek7,5 | — | %1,6 | 21 Mar 2022 |
30İzleyin | CVE-2012-6273İstismar yok | SQL injection vulnerability in BigAntSoft BigAnt IM Message Server allows remote attackers to execute arbitrary SQL commands via an SHU (akabigantsoft · bigant im message server · CWE-89 | Yüksek7,5 | — | %1,3 | 24 Şub 2013 |
30İzleyin | CVE-2022-26281İstismar yok | BigAnt Server v5.6.06 was discovered to contain an incorrect access control issue.bigantsoft · bigant server · CWE-311 | Yüksek7,5 | — | %0,9 | 4 Nis 2022 |
26İzleyin | CVE-2024-54761Kavram kanıtı | BigAnt Office Messenger 5.6.06 is vulnerable to SQL Injection via the 'dev_code' parameter.bigantsoft · bigant office messenger 5 · CWE-89 | Orta6,3 | — | %1,8 | 9 Oca 2025 |
22İzleyin | CVE-2022-23348Kavram kanıtı | BigAnt Software BigAnt Server v5.6.06 was discovered to utilize weak password hashes.bigantsoft · bigant server · CWE-916 | Orta5,3 | — | %3,3 | 21 Mar 2022 |
21İzleyin | CVE-2022-23350İstismar yok | BigAnt Software BigAnt Server v5.6.06 was discovered to contain a cross-site scripting (XSS) vulnerability.bigantsoft · bigant server · CWE-79 | Orta5,4 | — | %0,6 | 21 Mar 2022 |
18İzleyin | CVE-2009-4661Kavram kanıtı | Multiple buffer overflows in BigAnt Server 2.50 SP6 and earlier allow user-assisted remote attackers to cause a denial of service (applicatibigantsoft · bigant server · CWE-119 | Orta4,3 | — | %2,1 | 3 Mar 2010 |
- CVE-2008-191462Bu hafta
Stack-based buffer overflow in the AntServer module (AntServer.exe) in BigAnt IM Server in BigAnt Messenger 2.2 allows remote attackers to e
KritikCVSS 10,0SilahlaştırılmışEPSS %74bigantsoft · bigant messenger22 Nis 2008
- CVE-2009-466059Planlayın
Stack-based buffer overflow in the AntServer Module (AntServer.exe) in BigAnt IM Server 2.50 allows remote attackers to execute arbitrary co
KritikCVSS 10,0SilahlaştırılmışEPSS %63bigantsoft · bigant messenger3 Mar 2010
- CVE-2012-627554Planlayın
Multiple stack-based buffer overflows in AntDS.exe in BigAntSoft BigAnt IM Message Server allow remote attackers to have an unspecified impa
KritikCVSS 10,0SilahlaştırılmışEPSS %46bigantsoft · bigant im message server24 Şub 2013
- CVE-2025-036440Planlayın
BigAntSoft BigAnt Server Account Registration Bypass to File Upload RCE
KritikCVSS 9,8Kavram kanıtıEPSS %2bigantsoft · bigant server4 Şub 2025
- CVE-2022-2334635İzleyin
BigAnt Software BigAnt Server v5.6.06 was discovered to contain incorrect access control issues.
YüksekCVSS 8,8İstismar yokEPSS %1bigantsoft · bigant server21 Mar 2022
- CVE-2021-4343035İzleyin
An Access Control vulnerability exists in BigAntSoft BigAnt office messenger 5.6 via im_webserver, which could let a malicious user upload P
YüksekCVSS 8,8İstismar yokEPSS %1bigantsoft · bigant office messenger 57 Nis 2022
- CVE-2022-2334935İzleyin
BigAnt Software BigAnt Server v5.6.06 was discovered to contain a Cross-Site Request Forgery (CSRF).
YüksekCVSS 8,8İstismar yokEPSS %1bigantsoft · bigant server21 Mar 2022
- CVE-2012-627434İzleyin
BigAntSoft BigAnt IM Message Server does not require authentication for file uploading, which allows remote attackers to create arbitrary fi
OrtaCVSS 5,0SilahlaştırılmışEPSS %47bigantsoft · bigant im message server24 Şub 2013
- CVE-2022-2334734İzleyin
BigAnt Software BigAnt Server v5.6.06 was discovered to be vulnerable to directory traversal attacks.
YüksekCVSS 7,5Kavram kanıtıEPSS %13bigantsoft · bigant server21 Mar 2022
- CVE-2022-2335230İzleyin
An issue in BigAnt Software BigAnt Server v5.6.06 can lead to a Denial of Service (DoS).
YüksekCVSS 7,5İstismar yokEPSS %2bigantsoft · bigant server21 Mar 2022
- CVE-2022-2334530İzleyin
BigAnt Software BigAnt Server v5.6.06 was discovered to contain incorrect access control.
YüksekCVSS 7,5İstismar yokEPSS %2bigantsoft · bigant server21 Mar 2022
- CVE-2012-627330İzleyin
SQL injection vulnerability in BigAntSoft BigAnt IM Message Server allows remote attackers to execute arbitrary SQL commands via an SHU (aka
YüksekCVSS 7,5İstismar yokEPSS %1bigantsoft · bigant im message server24 Şub 2013
- CVE-2022-2628130İzleyin
BigAnt Server v5.6.06 was discovered to contain an incorrect access control issue.
YüksekCVSS 7,5İstismar yokEPSS %1bigantsoft · bigant server4 Nis 2022
- CVE-2024-5476126İzleyin
BigAnt Office Messenger 5.6.06 is vulnerable to SQL Injection via the 'dev_code' parameter.
OrtaCVSS 6,3Kavram kanıtıEPSS %2bigantsoft · bigant office messenger 59 Oca 2025
- CVE-2022-2334822İzleyin
BigAnt Software BigAnt Server v5.6.06 was discovered to utilize weak password hashes.
OrtaCVSS 5,3Kavram kanıtıEPSS %3bigantsoft · bigant server21 Mar 2022
- CVE-2022-2335021İzleyin
BigAnt Software BigAnt Server v5.6.06 was discovered to contain a cross-site scripting (XSS) vulnerability.
OrtaCVSS 5,4İstismar yokEPSS %1bigantsoft · bigant server21 Mar 2022
- CVE-2009-466118İzleyin
Multiple buffer overflows in BigAnt Server 2.50 SP6 and earlier allow user-assisted remote attackers to cause a denial of service (applicati
OrtaCVSS 4,3Kavram kanıtıEPSS %2bigantsoft · bigant server3 Mar 2010