Comparison Overview
Collins, Mason & Company

Collins, Mason & Company
1111 Broadway, 3rd Floor, Oakland, California, US, 94607
Last Update: 03/04/2026
Collins, Mason & Company, LLP (CMC) is dedicated to providing our clients with professional, personalized service and guidance in a wide range of tax, accounting, financial and business needs. Accurate and timely financial information helps you determine if you are o...

BDO USA
330 N Wabash Ave, Chicago, IL, US, 60611
Last Update: 01/04/2026
At BDO, our success is measured by what we achieve together. As a leading provider of audit, tax, and advisory services, we put people first cultivating a conscious, caring corporate culture that empowers our professionals and clients to thrive. Our commitment to excell...
Compliance Ranges Comparison

Collins, Mason & Company







BDO USA






Benchmark & Cyber Underwriting Signals
Incidents vs Accounting Industry Avg (This Year)
No incidents recorded for Collins, Mason & Company in 2026.
Incidents vs Accounting Industry Avg (This Year)
No incidents recorded for BDO USA in 2026.
Incident History - Collins, Mason & Company (X = Date, Y = Severity)
Collins, Mason & Company cyber incidents detection timeline including parent company and subsidiaries.
Incident History - BDO USA (X = Date, Y = Severity)
BDO USA cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Collins, Mason & Company

BDO USA
FAQ
Latest Global CVEs
A flaw was found in libsoup. After a CONNECT tunnel is established through an HTTP proxy, libsoup incorrectly attaches the Proxy-Authorization header to subsequent HTTPS requests sent through that tunnel to the destination server. This allows the destination server to capture proxy credentials, leading to information disclosure.
A flaw was found in libsoup. The chunked transfer encoding parser uses a permissive parsing function for chunk sizes that silently accepts inputs violating RFC 9112, including leading whitespace, plus sign prefixes, and trailing invalid characters. When libsoup operates behind a strict frontend proxy, this parsing differential can be exploited to smuggle HTTP requests.
A flaw was found in libsoup. An unsigned integer underflow in the soup_filter_input_stream_read_until() function causes a heap buffer over-read when parsing multipart HTTP responses. A malicious HTTP server can exploit this by sending a crafted multipart response, potentially causing the client application to crash or disclose sensitive heap memory.
Weintek cMT3092X HMI allows a non-privileged user to modify tokens to escalate privileges.
Weintek cMT3092X HMI stores user account passwords in plaintext.