CVE-2012-6275 EXPLOIT
10.0
HIGH · CVSS 2.0 · EPSS 46.5% (pctl 99)
Patch early
A public exploit exists.
Description
Multiple stack-based buffer overflows in AntDS.exe in BigAntSoft BigAnt IM Message Server allow remote attackers to have an unspecified impact via (1) the filename header in an SCH request or (2) the userid component in a DUPF request.
Scoring
| CVSS | 10.0 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
| EPSS | 46.5% — more likely to be exploited than 99% of all CVEs |
| Weakness | CWE-119 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2013-02-24 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| bigantsoft | bigant im message server |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | BigAnt Server 2.97 - SCH / DUPF Buffer Overflow (Metasploit) | 2013-02-20 |
→ the Explorer · watch your stack · NVD