Vulnerabilities > Julian Pawlowski

DATE CVE VULNERABILITY TITLE RISK
2008-01-25 CVE-2008-0446 SQL Injection vulnerability in Julian Pawlowski Lulieblog 1.02
SQL injection vulnerability in voircom.php in LulieBlog 1.02 allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
julian-pawlowski CWE-89
7.5
2006-09-06 CVE-2006-3126 Remote Arbitrary Command Execution vulnerability in Julian Pawlowski Capi4Hylafax 01.02.03
c2faxrecv in capi4hylafax 01.02.03 allows remote attackers to execute arbitrary commands via null (\0) and shell metacharacters in the TSI string, as demonstrated by a fax from an anonymous number.
network
low complexity
julian-pawlowski
7.5
2006-03-14 CVE-2006-1231 Unspecified vulnerability in Julian Pawlowski Capi4Hylafax 1.3
CAPI4HylaFAX 1.3, when compiled with GENERATE_DEBUGSFFDATAFILE set, allows local users to modify arbitrary files via a symlink attack on the c2faxrecv_dbgdatafile.sff temporary file.
local
high complexity
julian-pawlowski
1.2