Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Cyberlink

First CVE: Oct 5, 2007Active for: 19 yearsTotal CVEs: 10
34.7
VTI Score
Medium

Cyberlink develops a focused line of multimedia authoring and playback software, including products such as PowerDirector, PowerDVD, and related utilities that target consumer and prosumer content creation and management. The vendor's vulnerability disclosures cluster around memory-safety and access-control weaknesses—buffer-boundary violations, path-traversal conditions, and improper privilege management—typical of desktop applications that handle file I/O and user permissions, and frequently acquire public exploit code. Current severity and exploitation counts are shown alongside this summary.

FAUCET AI Generated
10
Total CVEs
More Total CVEs than 92% of tracked vendors
0.4
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 4% of tracked vendors
7.3
Avg CVSS Score
Higher Avg CVSS Score than 54% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Cyberlink over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 5, 2007
18 years ago
Most Recent CVE
May 24, 2022
1,522 days ago

Products(6 total)

Top CVEs

Signals from CVEs in this vendor scope (10 CVEs).

10 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2011-5171HIGH
Multiple stack-based buffer overflows in CyberLink Power2Go 7 (build 196) and 8 (build 1031) allow remote attackers to execute arbitrary code via the (1) src and (2) name parameter
Sep 15, 20129.371NOYES
CVE-2017-14627HIGH
Stack-based buffer overflows in CyberLink LabelPrint 2.5 allow remote attackers to execute arbitrary code via the (1) author (inside the INFORMATION tag), (2) name (inside the INFO
Sep 23, 20177.854NOYES
CVE-2007-5219MEDIUM
Directory traversal vulnerability in the CLAVSetting.CLSetting.1 ActiveX control in CLAVSetting.DLL 1.00.1829 in the CLAVSetting module in CyberLink PowerDVD 7.0 allows remote atta
Oct 5, 20076.432NOYES
CVE-2022-29333HIGH
A vulnerability in CyberLink Power Director v14 allows attackers to escalate privileges via a crafted .exe file.
May 24, 20227.828NONO
CVE-2010-5243MEDIUM
Multiple untrusted search path vulnerabilities in Cyberlink Power2Go 7.0.0.0816 allow local users to gain privileges via a Trojan horse (1) dwmapi.dll or (2) MFC71LOC.DLL file in t
Sep 7, 20126.921NONO
CVE-2012-4758MEDIUM
Multiple untrusted search path vulnerabilities in CyberLink PowerProducer 5.5.3.2325 allow local users to gain privileges via a Trojan horse (1) mfc71loc.dll or (2) mfc71enu.dll fi
Sep 6, 20126.921NONO
CVE-2012-4757MEDIUM
Multiple untrusted search path vulnerabilities in CyberLink StreamAuthor 4.0 build 3308 allow local users to gain privileges via a Trojan horse (1) mfc71loc.dll or (2) mfc71enu.dll
Sep 6, 20126.921NONO
CVE-2012-4756MEDIUM
Multiple untrusted search path vulnerabilities in CyberLink LabelPrint 2.5.3602 allow local users to gain privileges via a Trojan horse (1) mfc71loc.dll or (2) mfc71enu.dll file in
Sep 6, 20126.921NONO
CVE-2010-5238MEDIUM
Untrusted search path vulnerability in CyberLink PowerDirector 8.00.3022 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the current working directory,
Sep 7, 20126.920NONO
CVE-2010-5237MEDIUM
Untrusted search path vulnerability in CyberLink PowerDirector 7 allows local users to gain privileges via a Trojan horse mfc71loc.dll file in the current working directory, as dem
Sep 7, 20126.920NONO
View all 10 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products10 CVEs
70%
30%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local2 (20.0%)
Network0 (0.0%)
Unknown8 (80.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low2 (20.0%)
High0 (0.0%)
Unknown8 (80.0%)
User Interaction
None0 (0.0%)
Unknown8 (80.0%)
Required2 (20.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None2 (20.0%)
Unknown8 (80.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (10 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
2 CVEs
20.0% of CVEs· 99th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
3 CVEs
30.0% of CVEs· 79th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Cyberlink.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Cyberlink — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Cyberlink's Products

View all 1 CNAs →

Top CWEs