Description
SQL injection vulnerability in BigAntSoft BigAnt IM Message Server allows remote attackers to execute arbitrary SQL commands via an SHU (aka search user) request.
References (1)
Core 1
Core References
US Government Resource third-party-advisory
x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/990652
Scores
EPSS
0.0126
EPSS Percentile
66.5%
Details
CWE
CWE-89
Status
published
Products (1)
bigantsoft/bigant_im_message_server
Published
Feb 24, 2013
Tracked Since
Feb 18, 2026