Superfreaker Studios maintains a small portfolio of web-based publishing and e-commerce products including UPublisher, UStore, and USupport that serve content management and customer support functions. The observed vulnerability disclosures for this vendor are limited in volume and centered on broadly categorized weakness classes; current severity, exploitation, and exposure metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Superfreaker Studios over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-5888HIGH SQL injection vulnerability in viewarticle.asp in Superfreaker Studios UPublisher 1.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter. | Nov 14, 2006 | 7.5 | 28 | NO | YES |
CVE-2006-5890HIGH SQL injection vulnerability in detail.asp in Superfreaker Studios USupport 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. | Nov 14, 2006 | 7.5 | 28 | NO | YES |
CVE-2006-5891HIGH SQL injection vulnerability in detail.asp in Superfreaker Studios UStore 1.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter. | Nov 14, 2006 | 7.5 | 28 | NO | YES |
CVE-2006-6398HIGH Multiple SQL injection vulnerabilities in Superfreaker Studios UPublisher 1.0 allow remote attackers to execute arbitrary SQL commands via unspecified vectors in (a) sendarticle.as | Dec 8, 2006 | 7.5 | 19 | NO | NO |
CVE-2006-6399HIGH SQL injection vulnerability in Superfreaker Studios UPublisher 1.0 allows remote attackers to execute arbitrary SQL commands via the Username parameter in login.asp. NOTE: the pro | Dec 8, 2006 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Superfreaker Studios.
Media articles that mention a CVE ID that affects a product developed by Superfreaker Studios — matched by CVE ID, not by vendor name.