Arcsoft's vulnerability footprint concentrates in a narrowly scoped multimedia composition product, with observed disclosures reflecting general implementation weaknesses rather than a clearly defined pattern. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Arcsoft over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-4131HIGH Multiple buffer overflows in ArcSoft MMS Composer 1.5.5.6, and possibly earlier, and 2.0.0.13, and possibly earlier, allow remote attackers to cause a denial of service (crash) or | Aug 14, 2006 | 7.5 | 32 | NO | YES |
CVE-2023-53946HIGH Arcsoft PhotoStudio 6.0.0.172 contains an unquoted service path vulnerability in the ArcSoft Exchange Service that allows local attackers to escalate privileges. Attackers can plac | Dec 19, 2025 | 8.4 | 26 | NO | NO |
CVE-2006-4132MEDIUM ArcSoft MMS Composer 1.5.5.6 and possibly earlier, and 2.0.0.13 and possibly earlier, allow remote attackers to cause a denial of service (resource exhaustion and application crash | Aug 14, 2006 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Arcsoft.
Media articles that mention a CVE ID that affects a product developed by Arcsoft — matched by CVE ID, not by vendor name.