Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Primx

First CVE: Sep 5, 2018Active for: 8 yearsTotal CVEs: 10
11.1
VTI Score
Low

Primx maintains a small portfolio of enterprise and communication products including ZoneCentral, Zed, and ZedMail, occupying a focused but strategically visible niche in the vulnerability landscape. The vendor's disclosures recur around data-protection and access-control weaknesses—notably cleartext storage of sensitive information, exposure of confidential data to unauthorized actors, improper access controls, and path-traversal conditions—reflecting the authentication and information-handling demands of gateway and messaging platforms. A meaningful share of these vulnerabilities reach serious severity; defenders should prioritize Primx advisories particularly where systems handle sensitive communications or administrative access. Current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
10
Total CVEs
More Total CVEs than 92% of tracked vendors
0.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 5% of tracked vendors
6.1
Avg CVSS Score
Higher Avg CVSS Score than 35% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Primx over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 5, 2018
7 years ago
Most Recent CVE
Nov 15, 2024
616 days ago

Products(5 total)

Top CVEs

Signals from CVEs in this vendor scope (10 CVEs).

10 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2018-16518CRITICAL
A directory traversal vulnerability with remote code execution in Prim'X Zed! FREE through 1.0 build 186 and Zed! Limited Edition through 6.1 build 2208 allows creation of arbitrar
Sep 5, 20189.830NONO
CVE-2024-46465HIGH
By default, dedicated folders of CRYHOD for Windows up to 2024.3 can be accessed by other users to misuse technical files and make them perform tasks with higher privileges. Config
Nov 15, 20247.821NONO
CVE-2023-50444HIGH
By default, .ZED containers produced by PRIMX ZED! for Windows before Q.2020.3 (ANSSI qualification submission); ZED! for Windows before Q.2021.2 (ANSSI qualification submission);
Dec 13, 20237.521NONO
CVE-2019-7312MEDIUM
Limited plaintext disclosure exists in PRIMX Zed Entreprise for Windows before 6.1.2240, Zed Entreprise for Windows (ANSSI qualification submission) before 6.1.2150, Zed Entreprise
Feb 3, 20195.319NONO
CVE-2023-50440MEDIUM
ZED containers produced by PRIMX ZED! for Windows before Q.2020.3 (ANSSI qualification submission); ZED! for Windows before Q.2021.2 (ANSSI qualification submission); ZONECENTRAL f
Dec 13, 20235.518NONO
CVE-2023-50442MEDIUM
Encrypted folders created by PRIMX ZONECENTRAL through 2023.5 can be modified by a local attacker (with appropriate privileges) so that specific file types are excluded from encryp
Dec 13, 20235.517NONO
CVE-2023-50439MEDIUM
ZED containers produced by PRIMX ZED! for Windows before Q.2020.3 (ANSSI qualification submission), ZED! for Windows before Q.2021.2 (ANSSI qualification submission), ZONECENTRAL f
Dec 13, 20235.317NONO
CVE-2023-50441MEDIUM
Encrypted folders created by PRIMX ZONECENTRAL for Windows before Q.2021.2 (ANSSI qualification submission) or ZONECENTRAL for Windows before 2023.5 can be modified by an unauthent
Dec 13, 20235.517NONO
CVE-2018-19279MEDIUM
PRIMX ZoneCentral before 6.1.2236 on Windows sometimes leaks the plaintext of NTFS files. On non-SSD devices, this is limited to a 5-second window and file sizes less than 600 byte
Nov 14, 20184.317NONO
CVE-2023-50443MEDIUM
Encrypted disks created by PRIMX CRYHOD for Windows before Q.2020.4 (ANSSI qualification submission) or CRYHOD for Windows before 2023.5 can be modified by an unauthenticated attac
Dec 13, 20234.616NONO
View all 10 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products10 CVEs
70%
20%
10%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local4 (40.0%)
Network4 (40.0%)
Unknown0 (0.0%)
Physical2 (20.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low9 (90.0%)
High1 (10.0%)
Unknown0 (0.0%)
User Interaction
None8 (80.0%)
Unknown0 (0.0%)
Required2 (20.0%)
Privileges Required
Low2 (20.0%)
High0 (0.0%)
None8 (80.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (10 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Primx.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Primx — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Primx's Products

View all 1 CNAs →

Top CWEs