Comparison Overview
AECOM

AECOM
13355 Noel Road, Suite 400, Dallas, Texas, US, 75240
Last Update: 01/04/2026
AECOM is the global infrastructure leader, committed to delivering a better world. As a trusted professional services firm powered by deep technical abilities, we solve our clients’ complex challenges in water, environment, energy, transportation and buildings. Our team...

GHD
133 Castlereagh St, Sydney, 2000, AU
Last Update: 04/04/2026
We are committed to addressing the world’s biggest challenges in the areas of water, energy and communities. GHD is a global network of multi-disciplinary professionals providing clients with integrated solutions through engineering, environmental, design and construct...
Compliance Ranges Comparison

AECOM







GHD






Benchmark & Cyber Underwriting Signals
Incidents vs Civil Engineering Industry Avg (This Year)
No incidents recorded for AECOM in 2026.
Incidents vs Civil Engineering Industry Avg (This Year)
No incidents recorded for GHD in 2026.
Incident History - AECOM (X = Date, Y = Severity)
AECOM cyber incidents detection timeline including parent company and subsidiaries.
Incident History - GHD (X = Date, Y = Severity)
GHD cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

AECOM

GHD
FAQ
Latest Global CVEs
An issue in the SBN UDP interface of NASA cFS v7.0.1 allows attackers to cause a Denial of Service (DoS) via transmitting a crafted SBN frame.
A stack-based buffer overflow vulnerability exists in the cmd_edl function of OreSat Firmware v1.0. The vulnerability is triggered when processing the edl fw_flash command, where the <filename> argument is copied to a 64-byte stack buffer via memcpy without proper length validation. An attacker with physical access to the UART3 serial interface can exploit this vulnerability by sending a maliciously crafted command with an oversized filename parameter,
Adobe Campaign Classic (ACC) is affected by a Violation of Secure Design Principles vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized read access. Exploitation of this issue does not require user interaction.
Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could exploit this vulnerability to gain elevated privileges. Exploitation of this issue does not require user interaction.
Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in privilege escalation. Exploitation of this issue does not require user interaction. Scope is changed.