VendorsBigantsoftbigant_serverall versions
Vulnerabilities

Bigantsoft Bigant Server

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10CVEs
CVE-2025-0364
BigAntSoft BigAnt Server Account Registration Bypass to File Upload RCE
Published 2025-02-04 · Analyzed
9.8EPSS 0.019
CVE-2022-23346
BigAnt Software BigAnt Server v5.6.06 was discovered to contain incorrect access control issues.
Published 2022-03-21 · Modified
8.8EPSS 0.014
CVE-2022-23349
BigAnt Software BigAnt Server v5.6.06 was discovered to contain a Cross-Site Request Forgery (CSRF).
Published 2022-03-21 · Modified
8.8EPSS 0.007
CVE-2022-23347
BigAnt Software BigAnt Server v5.6.06 was discovered to be vulnerable to directory traversal attacks.
Published 2022-03-21 · Modified
7.5EPSS 0.135
CVE-2022-23352
An issue in BigAnt Software BigAnt Server v5.6.06 can lead to a Denial of Service (DoS).
Published 2022-03-21 · Modified
7.5EPSS 0.016
CVE-2022-23345
BigAnt Software BigAnt Server v5.6.06 was discovered to contain incorrect access control.
Published 2022-03-21 · Modified
7.5EPSS 0.016
CVE-2022-26281
BigAnt Server v5.6.06 was discovered to contain an incorrect access control issue.
Published 2022-04-05 · Modified
7.5EPSS 0.009
CVE-2022-23350
BigAnt Software BigAnt Server v5.6.06 was discovered to contain a cross-site scripting (XSS) vulnerability.
Published 2022-03-21 · Modified
5.4EPSS 0.006
CVE-2022-23348
BigAnt Software BigAnt Server v5.6.06 was discovered to utilize weak password hashes.
Published 2022-03-21 · Modified
5.3EPSS 0.033
CVE-2009-4661
Multiple buffer overflows in BigAnt Server 2.50 SP6 and earlier allow user-assisted remote attackers to cause a denial of service (application crash) via a crafted ZIP file that is not properly handled when the victim uses the (1) Update or (2) Plug-In console menu item.
Published 2010-03-03 · Modified
4.32 PoCEPSS 0.021