Comparison Overview
Cirium Ascend Consultancy

Cirium Ascend Consultancy
99 Bishopsgate, London, EC1M 3AL, GB
Last Update: 23/01/2026
Improve the management of aircraft investments, financial strategies, residual value risks and aviation assets by working with a global team of consultants and analysts. Cirium Ascend Consultancy has the largest team of certified appraisers globally, with nine ISTAT a...

Iberia
Calle Martínez Villergas 49, Madrid, 28027, ES
Last Update: 12/09/2026
Iberia is Spain’s number-one airline group and the leader in the Europe-Latin America market, with the single greatest array of destinations and flight frequencies. Together with British Airways, we’re part of the IAG Group, with the third-highest receipts in Europe and...
Compliance Ranges Comparison

Cirium Ascend Consultancy







Iberia






Benchmark & Cyber Underwriting Signals
Incidents vs Airlines and Aviation Industry Avg (This Year)
No incidents recorded for Cirium Ascend Consultancy in 2026.
Incidents vs Airlines and Aviation Industry Avg (This Year)
Iberia has 98.02% more incidents than the average of all companies with at least one recorded incident.
Incident History - Cirium Ascend Consultancy (X = Date, Y = Severity)
Cirium Ascend Consultancy cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Iberia (X = Date, Y = Severity)
Iberia cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Cirium Ascend Consultancy

Iberia
FAQ
Latest Global CVEs
The web management service in affected RouterOS versions contains an integer underflow in its HTTP request body handling that is reachable before authentication. This can be leveraged by an unauthenticated network attacker to achieve arbitrary code execution as root, or to cause a denial of service, using a single crafted request.
Denuvo Anti-Tamper through 2026-03-04 allows bypass of a hypervisor presence check via CPUID interception (SimpleSvm.sys on AMD; hyperkd.sys and hyperhv.dll on Intel).
PeaZip before 11.3.0, in a non-default configuration, is vulnerable to OS command injection via a filename in an archive because "quotation character already used in the string" is mishandled.
Zilliz Attu before 3.0.0 has a Playground feature that does not require authentication for proxying arbitrary HTTP and HTTPS requests to URLs on the public internet.
The Playground feature of Zilliz Attu before 3.0.0 allows SSRF (proxying of requests to private IP addresses).