Bigant Server
Vendor:
First CVE: Mar 3, 2010 · Active for 16 years
10
Total CVEs
More Total CVEs than 88% of tracked products
3.3
Avg CVEs / Year
Higher CVE frequency than 82% of tracked products
7.2
Avg CVSS
Higher Avg CVSS than 45% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Bigant Server over time
Volume of CVEsAvg CVSS Base Score
First CVE
Mar 3, 2010
16 years ago
Most Recent CVE
Feb 4, 2025
535 days ago
CVE Severity & Scoring
Bigant Server10 CVEs
30%
60%
10%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network9 (90.0%)
Unknown1 (10.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low9 (90.0%)
High0 (0.0%)
Unknown1 (10.0%)
User Interaction
None7 (70.0%)
Unknown1 (10.0%)
Required2 (20.0%)
Privileges Required
Low2 (20.0%)
High0 (0.0%)
None7 (70.0%)
Unknown1 (10.0%)
Top CVEs
Signals from CVEs in this product scope (10 CVEs).
10 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-23347HIGH BigAnt Software BigAnt Server v5.6.06 was discovered to be vulnerable to directory traversal attacks. | Mar 21, 2022 | 7.5 | 36 | NO | YES |
CVE-2025-0364CRITICAL BigAntSoft BigAnt Server, up to and including version 5.6.06, is vulnerable to unauthenticated remote code execution via account registration. An unauthenticated remote attacker ca | Feb 4, 2025 | 9.8 | 31 | NO | NO |
CVE-2022-23346HIGH BigAnt Software BigAnt Server v5.6.06 was discovered to contain incorrect access control issues. | Mar 21, 2022 | 8.8 | 31 | NO | NO |
CVE-2022-23352HIGH An issue in BigAnt Software BigAnt Server v5.6.06 can lead to a Denial of Service (DoS). | Mar 21, 2022 | 7.5 | 28 | NO | NO |
CVE-2022-26281HIGH BigAnt Server v5.6.06 was discovered to contain an incorrect access control issue. | Apr 5, 2022 | 7.5 | 27 | NO | NO |
CVE-2022-23345HIGH BigAnt Software BigAnt Server v5.6.06 was discovered to contain incorrect access control. | Mar 21, 2022 | 7.5 | 27 | NO | NO |
CVE-2022-23348MEDIUM BigAnt Software BigAnt Server v5.6.06 was discovered to utilize weak password hashes. | Mar 21, 2022 | 5.3 | 26 | NO | YES |
CVE-2022-23349HIGH BigAnt Software BigAnt Server v5.6.06 was discovered to contain a Cross-Site Request Forgery (CSRF). | Mar 21, 2022 | 8.8 | 24 | NO | NO |
CVE-2022-23350MEDIUM BigAnt Software BigAnt Server v5.6.06 was discovered to contain a cross-site scripting (XSS) vulnerability. | Mar 21, 2022 | 5.4 | 22 | NO | NO |
CVE-2009-4661MEDIUM Multiple buffer overflows in BigAnt Server 2.50 SP6 and earlier allow user-assisted remote attackers to cause a denial of service (application crash) via a crafted ZIP file that is | Mar 3, 2010 | 4.3 | 21 | NO | YES |
Exploit Exposure
Signals from CVEs in this product scope (10 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
2 CVEs
20.0% of CVEs· 98th percentile
ExploitDB
1 CVE
10.0% of CVEs· 89th percentile
Social Chatter
Signals from CVEs in this product scope (10 CVEs).
Media Mentions
Signals from CVEs in this product scope (10 CVEs).
Top CNAs Publishing CVEs For Bigant Server
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 5.6.06 | 8 | 7.3 | 2.7% | 0 | 2 |