Filtered by vendor Bigantsoft
Subscriptions
Filtered by product Bigant Server
Subscriptions
Total
10 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2009-4661 | 1 Bigantsoft | 1 Bigant Server | 2025-04-11 | N/A |
Multiple buffer overflows in BigAnt Server 2.50 SP6 and earlier allow user-assisted remote attackers to cause a denial of service (application crash) via a crafted ZIP file that is not properly handled when the victim uses the (1) Update or (2) Plug-In console menu item. | ||||
CVE-2025-0364 | 1 Bigantsoft | 1 Bigant Server | 2025-02-28 | 9.8 Critical |
BigAntSoft BigAnt Server, up to and including version 5.6.06, is vulnerable to unauthenticated remote code execution via account registration. An unauthenticated remote attacker can create an administrative user through the default exposed SaaS registration mechanism. Once an administrator, the attacker can upload and execute arbitrary PHP code using the "Cloud Storage Addin," leading to unauthenticated code execution. | ||||
CVE-2022-26281 | 1 Bigantsoft | 1 Bigant Server | 2024-11-21 | 7.5 High |
BigAnt Server v5.6.06 was discovered to contain an incorrect access control issue. | ||||
CVE-2022-23352 | 1 Bigantsoft | 1 Bigant Server | 2024-11-21 | 7.5 High |
An issue in BigAnt Software BigAnt Server v5.6.06 can lead to a Denial of Service (DoS). | ||||
CVE-2022-23350 | 1 Bigantsoft | 1 Bigant Server | 2024-11-21 | 5.4 Medium |
BigAnt Software BigAnt Server v5.6.06 was discovered to contain a cross-site scripting (XSS) vulnerability. | ||||
CVE-2022-23349 | 1 Bigantsoft | 1 Bigant Server | 2024-11-21 | 8.8 High |
BigAnt Software BigAnt Server v5.6.06 was discovered to contain a Cross-Site Request Forgery (CSRF). | ||||
CVE-2022-23348 | 1 Bigantsoft | 1 Bigant Server | 2024-11-21 | 5.3 Medium |
BigAnt Software BigAnt Server v5.6.06 was discovered to utilize weak password hashes. | ||||
CVE-2022-23347 | 1 Bigantsoft | 1 Bigant Server | 2024-11-21 | 7.5 High |
BigAnt Software BigAnt Server v5.6.06 was discovered to be vulnerable to directory traversal attacks. | ||||
CVE-2022-23346 | 1 Bigantsoft | 1 Bigant Server | 2024-11-21 | 8.8 High |
BigAnt Software BigAnt Server v5.6.06 was discovered to contain incorrect access control issues. | ||||
CVE-2022-23345 | 1 Bigantsoft | 1 Bigant Server | 2024-11-21 | 7.5 High |
BigAnt Software BigAnt Server v5.6.06 was discovered to contain incorrect access control. |
Page 1 of 1.