Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2532▼ 361 respecto a la semana anterior
Críticas / altas1338▲ 69 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 6 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
10 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (9.8) | 1.9% | — | Bigantsoft Bigant Server | 4/2/2025 | 17/6/2026 | BigAntSoft BigAnt Server, up to and including version 5.6.06, is vulnerable to unauthenticated remote code execution via account registration. An unauthenticated remote attacker can create an administrative user through the default exposed SaaS registration mechanism. Once an administrator, the attacker can upload and… | |
| Modificada | Alta (7.5) | 0.95% | — | Bigantsoft Bigant Server | 5/4/2022 | 9/7/2026 | BigAnt Server v5.6.06 was discovered to contain an incorrect access control issue. | |
| Modificada | Alta (7.5) | 1.6% | — | Bigantsoft Bigant Server | 21/3/2022 | 9/7/2026 | An issue in BigAnt Software BigAnt Server v5.6.06 can lead to a Denial of Service (DoS). | |
| Modificada | Media (5.4) | 0.61% | — | Bigantsoft Bigant Server | 21/3/2022 | 9/7/2026 | BigAnt Software BigAnt Server v5.6.06 was discovered to contain a cross-site scripting (XSS) vulnerability. | |
| Modificada | Alta (8.8) | 0.65% | — | Bigantsoft Bigant Server | 21/3/2022 | 9/7/2026 | BigAnt Software BigAnt Server v5.6.06 was discovered to contain a Cross-Site Request Forgery (CSRF). | |
| Modificada | Media (5.3) | 3.3% | — | Bigantsoft Bigant Server | 21/3/2022 | 9/7/2026 | BigAnt Software BigAnt Server v5.6.06 was discovered to utilize weak password hashes. | |
| Modificada | Alta (7.5) | 13% | — | Bigantsoft Bigant Server | 21/3/2022 | 9/7/2026 | BigAnt Software BigAnt Server v5.6.06 was discovered to be vulnerable to directory traversal attacks. | |
| Modificada | Alta (8.8) | 1.4% | — | Bigantsoft Bigant Server | 21/3/2022 | 9/7/2026 | BigAnt Software BigAnt Server v5.6.06 was discovered to contain incorrect access control issues. | |
| Modificada | Alta (7.5) | 1.6% | — | Bigantsoft Bigant Server | 21/3/2022 | 9/7/2026 | BigAnt Software BigAnt Server v5.6.06 was discovered to contain incorrect access control. | |
| Modificada | Media (4.3) | 2.1% | — | Bigantsoft Bigant Server | 3/3/2010 | 16/6/2026 | Multiple buffer overflows in BigAnt Server 2.50 SP6 and earlier allow user-assisted remote attackers to cause a denial of service (application crash) via a crafted ZIP file that is not properly handled when the victim uses the (1) Update or (2) Plug-In console menu item. |