Mohammed Idrees Banyamer
87 exploits
Active since Mar 2019
Roundcube Webmail <1.5.13 & <1.6.13 - XSS
deephas < 1.0.8 - Prototype Pollution
llama-stack < 0.4.0rc3 - Sensitive Information Exposure in Initialization Log
Windows File Explorer - Exposure of Sensitive Information to an Unauthorized Actor
InSAT MasterSCADA BUK-TS - Command Injection
CVSS 9.8
PX4 Autopilot: Stack-based Buffer Overflow via Oversized Path Input in MAVLink Log Request Handling
CVSS 6.5
PX4 Autopilot: Stack-based Buffer Overflow via Oversized Path Input in MAVLink Log Request Handling
CVSS 6.5
PX4 autopilot <1.17.0-rc2 - Memory Corruption
CVSS 5.2
Green Hills INTEGRITY RTOS 5.0.4 - Info Disclosure
CVSS 7.5
CraftCMS - Remote Code Execution
CVSS 10.0
GNU inetutils <=2.7 - Privilege Escalation
CVSS 7.4
GNU inetutils <=2.7 - Privilege Escalation
CVSS 7.4
MaxSite CMS <109.1 - Code Injection
CVSS 7.3
GNU inetutils <=2.7 - Privilege Escalation
CVSS 7.4
GNU inetutils <=2.7 - Privilege Escalation
CVSS 7.4
Amazon FreeRTOS 2.3.4-4.3.2 - Out-of-bounds Write via LLMNR or mDNS Query Processing
Microsoft Semantic Kernel <1.39.4 - RCE
CVSS 9.9
langgraph-checkpoint-sqlite < 3.0.1 - SQL Injection via Metadata Filter Key Interpolation
CVSS 7.3
karnop realtime-collaboration-platform - Origin Validation Error in CORS Configuration
CVSS 7.4
OneUptime <=9.5.13 - Code Injection
CVSS 9.9
LibreNMS < 26.2.0 - SQL Injection via IPv6 Address Search in ajax_table.php
CVSS 9.1
ingress-nginx < 1.13.7 and < 1.14.3 - Denial of Service via Validating Admission Controller
CVSS 6.5
filebrowser < 2.57.1 - Authenticated Authorization Bypass via Multiple Slash Path Manipulation
CVSS 8.1
MajorDoMo - Unauthenticated Remote Code Execution via Update URL Poisoning
CVSS 9.8
Repetier Server <1.4.10 - Path Traversal
CVSS 7.5