Ashraf Zaryouh
12 exploits
Active since Jul 2020
Heap Use-After-Free in the PKCS7_verify() Function
Google Android <16-qpr2 - Auth Bypass
cPanel and WHM Authentication Bypass via Login Flow
CVSS 9.8
Cisco Catalyst SD-WAN Controller Authenticated Privilege Escalation Vulnerability
CVSS 7.8
Microsoft Windows 11 Version 24H2 - Windows BitLocker Security Feature Bypass Vulnerability
CVSS 6.8
Drupal core - Highly critical - SQL injection - SA-CORE-2026-004
CVSS 9.8
ptrace: slightly saner 'get_dumpable()' logic
CVSS 7.1
Cisco Secure Firewall Management Center 6.4.0.13-6.4.0.18, 7.0.0 - RCE via Java Deserialization
CVSS 10.0
crypto: algif_aead - Revert to operating out-of-place
CVSS 7.8
PackageKit vulnerable to TOCTOU Race on Transaction Flags leads to arbitrary package installation as root
CVSS 8.8
RCE on Grafana via sqlExpressions
CVSS 9.1
BIG-IP 11.6.1-11.6.5.1 - Remote Code Execution via TMUI Undisclosed Pages
CVSS 9.8