CVE-2012-6274
medium · 5BigAntSoft BigAnt IM Message Server does not require authentication for file uploading, which allows remote attackers to create arbitrary files under AntServer\DocData\Public via unspecified vectors.
5
CVSS
46.9%
EPSS (exploit prob.)
99th
EPSS percentile
2013-02-24
Published
AV:N/AC:L/Au:N/C:N/I:P/A:N
Weaknesses
CWE-287
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| bigantsoft | bigant_im_message_server | all versions |
Check a specific version with /api/v1/cve/match.
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2012-6274