Comparison Overview
Black & Veatch

Black & Veatch
11401 Lamar Avenue, Overland Park, KS, US, 66211
Last Update: 01/04/2026
Black & Veatch is an employee-owned, global leader in building critical human infrastructure in Energy, Water, Digital Connectivity and Government Services. Since 1915, we have helped our clients improve business operations and the lives of people in over 100 countries ...

Petrofac
117 Jermyn Street, London, GB, SW1Y 6HH
Last Update: 29/03/2026
We are a leading international service provider to the energy industry, with a diverse client portfolio including many of the world’s leading energy companies. Petrofac designs, builds, manages and maintains oil, gas, refining, petrochemicals and renewable energy infra...
Compliance Ranges Comparison

Black & Veatch







Petrofac






Benchmark & Cyber Underwriting Signals
Incidents vs Engineering Services Industry Avg (This Year)
No incidents recorded for Black & Veatch in 2026.
Incidents vs Engineering Services Industry Avg (This Year)
No incidents recorded for Petrofac in 2026.
Incident History - Black & Veatch (X = Date, Y = Severity)
Black & Veatch cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Petrofac (X = Date, Y = Severity)
Petrofac cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Black & Veatch

Petrofac
FAQ
Latest Global CVEs
An issue in the SBN UDP interface of NASA cFS v7.0.1 allows attackers to cause a Denial of Service (DoS) via transmitting a crafted SBN frame.
A stack-based buffer overflow vulnerability exists in the cmd_edl function of OreSat Firmware v1.0. The vulnerability is triggered when processing the edl fw_flash command, where the <filename> argument is copied to a 64-byte stack buffer via memcpy without proper length validation. An attacker with physical access to the UART3 serial interface can exploit this vulnerability by sending a maliciously crafted command with an oversized filename parameter,
Adobe Campaign Classic (ACC) is affected by a Violation of Secure Design Principles vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized read access. Exploitation of this issue does not require user interaction.
Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could exploit this vulnerability to gain elevated privileges. Exploitation of this issue does not require user interaction.
Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in privilege escalation. Exploitation of this issue does not require user interaction. Scope is changed.