← Back

Julian Pawlowski

julian_pawlowski

3 CVEs • 2 products

Products (2)

Click to collapse
Toggle
Capi4hylafax
capi4hylafax
Lulieblog
lulieblog

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Julian Pawlowski
1Lulieblog
Apr 23, 2026
Jan 25, 2008
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in voircom.php in LulieBlog 1.02 allows remote attackers to execute arbitrary SQL commands via the id parameter.
1Julian Pawlowski
1Capi4hylafax
Apr 16, 2026
Sep 6, 2006
N/A· v4
N/A· v3
7.5 HIGH· v2
c2faxrecv in capi4hylafax 01.02.03 allows remote attackers to execute arbitrary commands via null (\0) and shell metacharacters in the TSI string, as demonstrated by a fax from an anonymous number.
1Julian Pawlowski
1Capi4hylafax
Apr 16, 2026
Mar 14, 2006
N/A· v4
N/A· v3
1.2 LOW· v2
CAPI4HylaFAX 1.3, when compiled with GENERATE_DEBUGSFFDATAFILE set, allows local users to modify arbitrary files via a symlink attack on the c2faxrecv_dbgdatafile.sff temporary file.