Mohammed Idrees Banyamer
91 exploits
Active since Mar 2019
Hyland OnBase - Unauthenticated RCE
CVSS 9.8
GNU Inetutils Telnet Authentication Bypass Exploit CVE-2026-24061
CVSS 9.8
Calero VeraSMART <2022 R1 - Remote Code Execution
CVSS 9.8
NiceGUI < 3.7.0 - Path Traversal via FileUpload.name Property
CVSS 7.5
godot-mcp < 0.1.1 - Remote Code Execution via Project Path Shell Metacharacter Injection
CVSS 7.8
Group-Office < 6.8.150 - Authenticated Remote Code Execution via tmp_file Parameter
CVSS 8.8
CAI Framework <= 0.5.10 - Remote Code Execution via Argument Injection in find_file Tool
CVSS 9.6
ChurchCRM < 6.7.2 - Authenticated SQL Injection via PaddleNumEditor.php PerID Parameter
CVSS 8.8
FUXA 1.2.8-1.2.10 - Unauthenticated Authorization Bypass via Scheduler Modification
CVSS 9.1
SumatraPDF 3.5.0-3.5.2 - Remote Code Execution via Update Mechanism TLS Hostname Verification Bypass
CVSS 7.5
manga-image-translator <beta-0.3 - Unauthenticated RCE
JUNG Smart Visu Server 1.1.1050 - DoS
CVSS 7.5
LCDS LAquis SCADA <= 4.3.1.1085 - Path Traversal and Arbitrary File Write via Malicious ELS Project File
CVSS 7.8
SQL Injection in Nessus via Malicious Scan Result File Import
CVSS 3.3
Discuz! X5.0 Authentication Bypass via dbbak.php Encryption Oracle
CVSS 9.1
Flowise - Custom MCP Environment Variable Denylist Bypass via Case Sensitivity
CVSS 5.0
Hydra - Stack Buffer Overflow in NTLM Authentication Handler
CVSS 8.8
SQLite < 3.50.2 - Memory Corruption via Aggregate Terms Overflow
CVSS 7.7
haxcms-nodejs 11.0.6-24.9.9 - Stored Cross-Site Scripting
CVSS 8.0
Calero VeraSMART <2022 R1 - Remote Code Execution
CVSS 9.8
NiceGUI < 3.7.0 - Path Traversal via FileUpload.name Property
CVSS 7.5
JUNG Smart Visu Server 1.1.1050 - DoS
CVSS 7.5
ASP.NET Core 2.3.0-2.3.5 - HTTP Request Smuggling via Inconsistent Request Interpretation
CVSS 9.9
7-Zip - Remote Code Execution via Symbolic Link Traversal in ZIP File Parsing
CVSS 7.8
Cybersecurity AI (CAI) Framework 0.5.10 - Command Injection