Mohammed Idrees Banyamer
87 exploits
Active since Mar 2019
Hyland OnBase - Unauthenticated RCE
CVSS 9.8
GNU Inetutils Telnet Authentication Bypass Exploit CVE-2026-24061
CVSS 9.8
Group-Office < 6.8.150 - Authenticated Remote Code Execution via tmp_file Parameter
CVSS 8.8
ChurchCRM < 6.7.2 - Authenticated SQL Injection via PaddleNumEditor.php PerID Parameter
CVSS 8.8
CAI Framework <= 0.5.10 - Remote Code Execution via Argument Injection in find_file Tool
CVSS 9.6
Calero VeraSMART <2022 R1 - Remote Code Execution
CVSS 9.8
JUNG Smart Visu Server 1.1.1050 - DoS
CVSS 7.5
manga-image-translator <beta-0.3 - Unauthenticated RCE
SumatraPDF 3.5.0-3.5.2 - Remote Code Execution via Update Mechanism TLS Hostname Verification Bypass
CVSS 7.5
FUXA 1.2.8-1.2.10 - Unauthenticated Authorization Bypass via Scheduler Modification
CVSS 9.1
NiceGUI < 3.7.0 - Path Traversal via FileUpload.name Property
CVSS 7.5
godot-mcp < 0.1.1 - Remote Code Execution via Project Path Shell Metacharacter Injection
CVSS 7.8
LCDS LAquis SCADA <= 4.3.1.1085 - Path Traversal and Arbitrary File Write via Malicious ELS Project File
CVSS 7.8
SQLite < 3.50.2 - Memory Corruption via Aggregate Terms Overflow
CVSS 9.8
haxcms-nodejs 11.0.6-24.9.9 - Stored Cross-Site Scripting
CVSS 8.0
Calero VeraSMART <2022 R1 - Remote Code Execution
CVSS 9.8
NiceGUI < 3.7.0 - Path Traversal via FileUpload.name Property
CVSS 7.5
JUNG Smart Visu Server 1.1.1050 - DoS
CVSS 7.5
ASP.NET Core 2.3.0-2.3.5 - HTTP Request Smuggling via Inconsistent Request Interpretation
CVSS 9.9
7-Zip - Remote Code Execution via Symbolic Link Traversal in ZIP File Parsing
CVSS 7.8
Cybersecurity AI (CAI) Framework 0.5.10 - Command Injection
deephas < 1.0.8 - Prototype Pollution
CVSS 8.8
CraftCMS - Remote Code Execution
CVSS 10.0
Microsoft Management Console - Auth Bypass
CVSS 7.0
Fortinet FortiWeb unauthenticated RCE
CVSS 9.8