Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Acdsystems

First CVE: Dec 31, 2002Active for: 24 yearsTotal CVEs: 10

Acdsystems develops a focused suite of image editing and asset management applications including Canvas Draw, ACDSee, and Photo Editor, where reported vulnerabilities cluster around memory-handling issues such as out-of-bounds writes and heap-based buffer overflows. These weakness classes are typical of native image-processing codebases and arise from the parsing demands of complex file formats; current severity and exploitation activity are shown alongside this summary.

FAUCET AI Generated
10
Total CVEs
More Total CVEs than 86% of tracked vendors
0.6
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 98% of tracked vendors
8.0
Avg CVSS Score
Higher Avg CVSS Score than 74% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Acdsystems over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 31, 2002
23 years ago
Most Recent CVE
Jul 19, 2018
2,927 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (10 CVEs).

10 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2007-2193HIGH
Stack-based buffer overflow in the ID_X.apl plugin in ACDSee 9.0 Build 108, Pro 8.1 Build 99, and Photo Editor 4.0 Build 195 allows user-assisted remote attackers to execute arbitr
Apr 24, 20079.362NOYES
CVE-2007-1943HIGH
Integer overflow in ACDSee Photo Manager 9.0 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via large width image sizes in a cr
Apr 11, 20079.337NOYES
CVE-2012-1197HIGH
Integer overflow in the IDE_ACDStd.apl module for ACDSee 14.1 Build 137 allows remote attackers to execute arbitrary code via crafted "image dimension values" in a BMP file, which
Feb 18, 20129.328NONO
CVE-2018-3870HIGH
An exploitable out-of-bounds write exists in the PCX parsing functionality of Canvas Draw version 4.0.0. A specially crafted PCX image processed via the application can lead to an
Jul 19, 20187.826NONO
CVE-2018-3871HIGH
An exploitable out-of-bounds write exists in the PCX parsing functionality of Canvas Draw version 4.0.0. A specially crafted PCX image processed via the application can lead to an
Jul 19, 20187.825NONO
CVE-2018-3859HIGH
An exploitable out-of-bounds write exists in the TIFF parsing functionality of Canvas Draw version 4.0.0. A specially crafted TIFF image processed via the application can lead to a
Jul 19, 20187.825NONO
CVE-2018-3858HIGH
An exploitable heap overflow exists in the TIFF parsing functionality of Canvas Draw version 4.0.0. A specially crafted TIFF image processed via the application can lead to an out-
Jul 19, 20187.825NONO
CVE-2018-3857HIGH
An exploitable heap overflow exists in the TIFF parsing functionality of Canvas Draw version 4.0.0. A specially crafted TIFF image processed via the application can lead to an out-
Jul 19, 20187.825NONO
CVE-2018-3860HIGH
An exploitable out-of-bounds write exists in the TIFF parsing functionality of Canvas Draw version 4.0.0. A specially crafted TIFF image processed via the application can lead to a
Jul 19, 20187.824NONO
CVE-2002-1756MEDIUM
ACDSee 4.0 allows remote attackers to cause a denial of service (crash) via an .ais file with a long file description field, which is not properly handled when the file properties
Dec 31, 20025.015NONO
View all 10 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products10 CVEs
10%
90%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local6 (60.0%)
Network0 (0.0%)
Unknown4 (40.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low6 (60.0%)
High0 (0.0%)
Unknown4 (40.0%)
User Interaction
None0 (0.0%)
Unknown4 (40.0%)
Required6 (60.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None6 (60.0%)
Unknown4 (40.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (10 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
10.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
20.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Acdsystems.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Acdsystems — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Acdsystems's Products

View all 2 CNAs →

Top CWEs