Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Accusoft

First CVE: Apr 24, 2007Active for: 19 yearsTotal CVEs: 61
59.3
VTI Score
TOP TARGET

Accusoft develops document and image-processing software positioned in content-conversion and document-management workflows, with a narrow but high-value product portfolio centered on ImageGear, PrizmDoc, and Prizm Content Connect. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity, reflecting the inherent risks of parsing and buffer manipulation in media-processing codebases. The exposure recurs consistently through memory-safety weakness classes—out-of-bounds writes, heap-based buffer overflows, buffer-size calculation errors, and improper array-index validation—that are characteristic of native image-parsing implementations handling untrusted input. Defenders should treat this vendor's updates as high-priority for environments where document conversion or embedded imaging sits at the network boundary or processes untrusted files. Current severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
61
Total CVEs
More Total CVEs than 99% of tracked vendors
2.9
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 91% of tracked vendors
8.8
Avg CVSS Score
Higher Avg CVSS Score than 84% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Accusoft over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 24, 2007
19 years ago
Most Recent CVE
Sep 25, 2023
1,033 days ago

Products(3 total)

Top CVEs

Signals from CVEs in this vendor scope (61 CVEs).

61 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2012-5190CRITICAL
Prizm Content Connect 5.1 has an Arbitrary File Upload Vulnerability
Jan 21, 20209.842NOYES
CVE-2007-2209MEDIUM
Buffer overflow in igcore15d.dll 15.1.2.0 and 15.2.0.0 for AccuSoft ImageGear, as used in Corel Paint Shop Pro Photo 11.20 and possibly other products, allows user-assisted remote
Apr 24, 20076.834NOYES
CVE-2021-21821CRITICAL
A stack-based buffer overflow vulnerability exists in the PDF process_fontname functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to code executi
Jul 8, 20219.831NONO
CVE-2021-21833CRITICAL
An improper array index validation vulnerability exists in the TIF IP_planar_raster_unpack functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to
Jun 11, 20219.831NONO
CVE-2021-21795CRITICAL
A heap-based buffer overflow vulnerability exists in the PSD read_icc_icCurve_data functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to an integ
Jun 11, 20219.831NONO
CVE-2020-6151CRITICAL
A memory corruption vulnerability exists in the TIFF handle_COMPRESSION_PACKBITS functionality of Accusoft ImageGear 19.7. A specially crafted malformed file can cause a memory cor
Sep 1, 20209.831NONO
CVE-2023-35002CRITICAL
A heap-based buffer overflow vulnerability exists in the pictwread functionality of Accusoft ImageGear 20.1. A specially crafted malformed file can lead to arbitrary code execution
Sep 25, 20239.830NONO
CVE-2022-29465CRITICAL
An out-of-bounds write vulnerability exists in the PSD Header processing memory allocation functionality of Accusoft ImageGear 20.0. A specially-crafted malformed file can lead to
Aug 5, 20229.830NONO
CVE-2021-21824CRITICAL
An out-of-bounds write vulnerability exists in the JPG Handle_JPEG420 functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to memory corruption. An
Jun 11, 20219.830NONO
CVE-2018-15805CRITICAL
Accusoft PrizmDoc HTML5 Document Viewer before 13.5 contains an XML external entity (XXE) vulnerability, allowing an attacker to read arbitrary files or cause a denial of service (
Dec 10, 20189.130NONO
View all 61 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products61 CVEs
72%
23%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local7 (11.5%)
Network53 (86.9%)
Unknown1 (1.6%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low60 (98.4%)
High0 (0.0%)
Unknown1 (1.6%)
User Interaction
None14 (23.0%)
Unknown1 (1.6%)
Required46 (75.4%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None60 (98.4%)
Unknown1 (1.6%)

Exploit Exposure

Signals from CVEs in this vendor scope (61 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
3.3% of CVEs· 75th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Accusoft.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Accusoft — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Accusoft's Products

View all 2 CNAs →

Top CWEs