Comparison Overview
BASF Personal Care

BASF Personal Care
Carl-Bosch-Straße 38, Ludwigshafen, Rhineland-Palatinate, 67063, DE
Last Update: 10/12/2025
BASF Personal Care is a global leading supplier of sustainable high-performance ingredients for the personal care industry, including skincare, hair care, oral care, and sun care. At the heart of our business lie science excellence and market empathy in perfect harmon...

Avon
Nunn Mills Road, Northampton, GB, NN1 5PA
Last Update: 16/09/2026
Think you know Avon? Think again. We’ve been doing beauty differently for 135 years. Pioneering in listening to women’s needs and speaking out for them. Standing for what matters to them. Supporting their endeavours. We’re a company that connects people through bea...
Compliance Ranges Comparison

BASF Personal Care







Avon






Benchmark & Cyber Underwriting Signals
Incidents vs Personal Care Product Manufacturing Industry Avg (This Year)
No incidents recorded for BASF Personal Care in 2026.
Incidents vs Personal Care Product Manufacturing Industry Avg (This Year)
No incidents recorded for Avon in 2026.
Incident History - BASF Personal Care (X = Date, Y = Severity)
BASF Personal Care cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Avon (X = Date, Y = Severity)
Avon cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

BASF Personal Care

Avon
FAQ
Latest Global CVEs
Omni C20 lacks proper certificate validation which could allow an attacker to perform a man-in-the-middle attack which could allow them to execute arbitrary code.
Omni C20 uses hard-coded credentials that could allow an attacker to monitor log files to obtain credentials to access information like mapping data.
The affected products are vulnerable to command injection attack that could allow an unauthenticated attacker to execute system commands during the pairing process.
The Botslab G980H dash camera firmware contains an authentication vulnerability in the root account exposed through the device's UART interface. The affected account does not require a password before granting access to a privileged system interface, and the interface also displays the device's WiFi password during startup. An unauthenticated attacker with physical access to the device could connect to the UART interface, obtain root privileges, and recover the WiFi password.
The Botslab G980H dash camera firmware generates the default WiFi password using predictable device information, portions of which are advertised by the product. An unauthenticated attacker within WiFi range could potentially determine the remaining password characters through limited guessing and gain unauthorized access to the device network.