BigAnt Server 0-Day Vulnerability Lets Attackers Run Malicious Code Remotely

Post Reply
Shane1145
Posts: 1729
Joined: Wed Sep 25, 2024 2:31 pm

BigAnt Server 0-Day Vulnerability Lets Attackers Run Malicious Code Remotely

Post by Shane1145 »

A critical vulnerability in BigAntSoft’s enterprise chat server software has exposed ~50 internet-facing systems to unauthenticated remote code execution attacks.

Designated CVE-2025-0364, this exploit chain enables attackers to bypass authentication protocols, create administrative accounts, and execute malicious PHP code on vulnerable servers running BigAnt Server v5.6.06 and earlier.

https://gbhackers.com/bigant-server-vulnerability/
Post Reply