Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Prise

First CVE: Sep 20, 2019Active for: 7 yearsTotal CVEs: 11
34.5
VTI Score
Medium

Prise's vulnerability profile concentrates in its Advanced Driver Assistance Systems (ADAS) platform, a specialized automotive software product whose disclosures skew toward serious outcomes including critical severity. The recurring weakness classes—cross-site scripting, cross-site request forgery, sensitive information exposure, code injection, and path traversal—reflect the web-facing and data-handling attack surface typical of in-vehicle or connected automotive control systems. Current exploitation activity and severity figures are shown alongside this summary.

FAUCET AI Generated
11
Total CVEs
More Total CVEs than 92% of tracked vendors
11.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 100% of tracked vendors
7.2
Avg CVSS Score
Higher Avg CVSS Score than 52% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Prise over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 20, 2019
6 years ago
Most Recent CVE
Sep 20, 2019
2,498 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (11 CVEs).

11 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2019-15088CRITICAL
An issue was discovered in PRiSE adAS 1.7.0. Password hashes are compared using the equality operator. Thus, under specific circumstances, it is possible to bypass login authentica
Sep 20, 20199.829NONO
CVE-2019-15089HIGH
An issue was discovered in PRiSE adAS 1.7.0. Forms have no CSRF protection, letting an attacker execute actions as the administrator.
Sep 20, 20198.827NONO
CVE-2019-14914CRITICAL
An issue was discovered in PRiSE adAS 1.7.0. The path is not properly escaped in the medatadata_del method, leading to an arbitrary file read and deletion via Directory Traversal.
Sep 20, 20199.126NONO
CVE-2019-15087HIGH
An issue was discovered in PRiSE adAS 1.7.0. An authenticated user can change the function used to hash passwords to any function, leading to remote code execution.
Sep 20, 20197.224NONO
CVE-2019-15085HIGH
An issue was discovered in PRiSE adAS 1.7.0. The current database password is embedded in the change password form.
Sep 20, 20197.522NONO
CVE-2019-14916MEDIUM
An issue was discovered in PRiSE adAS 1.7.0. A file's format is not properly checked, leading to an unrestricted file upload.
Sep 20, 20196.521NONO
CVE-2019-15086MEDIUM
An issue was discovered in PRiSE adAS 1.7.0. The newentityID parameter is not properly escaped, leading to a reflected XSS in the error message.
Sep 20, 20196.120NONO
CVE-2019-14915MEDIUM
An issue was discovered in PRiSE adAS 1.7.0. Certificate data are not properly escaped. This leads to XSS when submitting a rogue certificate.
Sep 20, 20196.120NONO
CVE-2019-14911MEDIUM
An issue was discovered in PRiSE adAS 1.7.0. The OPENSSO module does not properly escape output on error, leading to reflected XSS.
Sep 20, 20196.120NONO
CVE-2019-14912MEDIUM
An issue was discovered in PRiSE adAS 1.7.0. The OPENSSO module does not properly check the goto parameter, leading to an open redirect that leaks the session cookie.
Sep 20, 20196.119NONO
View all 11 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products11 CVEs
55%
27%
18%
Severity distribution among all CVEs352,101 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network11 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low11 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None5 (45.5%)
Unknown0 (0.0%)
Required6 (54.5%)
Privileges Required
Low2 (18.2%)
High1 (9.1%)
None8 (72.7%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (11 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Prise.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Prise — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Prise's Products

View all 1 CNAs →

Top CWEs