Piotr Bazydlo
11 exploits
Active since May 2023
Ivanti Endpoint Manager Mobile <= 12.5.0.0 - Unauthenticated Authentication Bypass via API
CVSS 5.3
SolarWinds Web Help Desk < 2026.1 - Unauthenticated Remote Code Execution via Untrusted Data Deserialization
CVSS 9.8
Kentico Xperience 13 CMS - Staging Service Authentication Bypass (WT-2025-0011)
CVSS 9.8
Kentico Xperience 13 CMS - Staging Service Authentication Bypass (WT-2025-0006)
CVSS 9.8
FreePBX 15.0-15.0.65 - Unauthenticated Authentication Bypass and Remote Code Execution
CVSS 9.8
Ivanti EPMM Authentication Bypass for Expression Language Remote Code Execution
CVSS 7.2
SmarterMail < 100.0.9413 - Unauthenticated Arbitrary File Upload and Remote Code Execution
CVSS 10.0
Commvault Command-Line Argument Injection to Traversal Remote Code Execution
CVSS 6.5
Sitecore XP CVE-2025-34511 Post-Authentication File Upload
CVSS 8.8
Ivanti Avalanche < 6.3.4.153 - Unrestricted Upload of File with Dangerous Type
CVSS 7.2
Sitecore XP/XM 10.1-10.1.4, 10.2, 10.3-10.3.3, 10.4-10.4.1 - Unauthenticated RCE via Hardcoded Credentials
CVSS 7.5