CVE-2012-6273

BigAnt IM Message Server - SQL Injection via SHU Request

Title source: llm
STIX 2.1

Description

SQL injection vulnerability in BigAntSoft BigAnt IM Message Server allows remote attackers to execute arbitrary SQL commands via an SHU (aka search user) request.

References (1)

Core 1
Core References
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/990652

Scores

EPSS 0.0126
EPSS Percentile 66.5%

Details

CWE
CWE-89
Status published
Products (1)
bigantsoft/bigant_im_message_server
Published Feb 24, 2013
Tracked Since Feb 18, 2026