bigape backup is on the vulnerable components list
forum.joomla.org/index.php/topic,79477.0.html
.
More info and a possible patch file
forum.joomla.org/index.php/topic,87736.0.html
From the file dates listed on the bigape site I doubt if the files there are fixed.