Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Poweriso

First CVE: Apr 29, 2006Active for: 20 yearsTotal CVEs: 5

PowerISO is a disk image and optical media utility with a narrow product portfolio focused on ISO file creation, mounting, and manipulation. Vulnerabilities affecting the product center on memory-safety issues, including out-of-bounds writes, buffer-boundary violations, and use-after-free conditions, reflecting the low-level file parsing and image-handling complexity inherent to media-utility software. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
5
Total CVEs
More Total CVEs than 83% of tracked vendors
1.3
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 74% of tracked vendors
7.8
Avg CVSS Score
Higher Avg CVSS Score than 74% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Poweriso over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 29, 2006
20 years ago
Most Recent CVE
Dec 16, 2022
1,317 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (5 CVEs).

5 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2006-2102HIGH
Directory traversal vulnerability in PowerISO 2.9 allows remote attackers to write arbitrary files via a .. (dot dot) in a filename in an ISO image.
Apr 29, 20067.832NOYES
CVE-2017-2823HIGH
A use-after-free vulnerability exists in the .ISO parsing functionality of PowerISO 6.8. A specially crafted .ISO file can cause a vulnerability resulting in potential code executi
May 24, 20177.829NONO
CVE-2022-41992HIGH
A memory corruption vulnerability exists in the VHD File Format parsing CXSPARSE record functionality of PowerISO PowerISO 8.3. A specially-crafted file can lead to an out-of-bound
Dec 16, 20227.826NONO
CVE-2021-21871HIGH
A memory corruption vulnerability exists in the DMG File Format Handler functionality of PowerISO 7.9. A specially crafted DMG file can lead to an out-of-bounds write. An attacker
Jun 29, 20217.825NONO
CVE-2017-2817HIGH
A stack buffer overflow vulnerability exists in the ISO parsing functionality of Power Software Ltd PowerISO 6.8. A specially crafted ISO file can cause a vulnerability resulting i
May 24, 20177.825NONO
View all 5 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products5 CVEs
100%
Severity distribution among all CVEs352,427 CVEs
45%
40%
11%
High
Attack Vector
Local4 (80.0%)
Network0 (0.0%)
Unknown1 (20.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low4 (80.0%)
High0 (0.0%)
Unknown1 (20.0%)
User Interaction
None0 (0.0%)
Unknown1 (20.0%)
Required4 (80.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None4 (80.0%)
Unknown1 (20.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (5 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
20.0% of CVEs· 77th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Poweriso.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Poweriso — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Poweriso's Products

View all 2 CNAs →

Top CWEs