Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download

Comparison Overview

Department of Defense Office of Small Business ProgramsDepartment of Defense Office of Small Business Programs
VS
United States Department of WarUnited States Department of War
Department of Defense Office of Small Business Programs

Department of Defense Office of Small Business Programs

Pentagon - 3B941, Arlington, US

Last Update: 19/03/2026

View Profile
Between 750 and 799
https://business.defense.gov
751/1000Fair

Mission: To modernize the defense industrial base, accelerate acquisitions, and reestablish deterrence by reducing barriers for small businesses to supply our Warfighters with innovative solutions and critical services. Vision: Maximize opportunities for businesses to...

NAICS:92811
NAICS Definition:National Security
Employees:57
Subsidiaries:1
12-month incidents
0
Known data breaches
0
Attack type number
1
United States Department of War

United States Department of War

Washington, DC, US

Last Update: 02/04/2026

View Profile
Between 800 and 849
http://war.gov
812/1000Good

The mission of the Department of War is to provide military forces necessary to protect the security of our country. The U.S. military defends the homeland, deters adversaries, and builds security around the world by projecting U.S. influence and working with allies and...

NAICS:92811
NAICS Definition:National Security
Employees:67,477
Subsidiaries:4
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Ranges Comparison

Based On Specific Ai Models Category
Department of Defense Office of Small Business Programs

Department of Defense Office of Small Business Programs

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA
United States Department of War

United States Department of War

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA

Benchmark & Cyber Underwriting Signals

Incidents vs Armed Forces Industry Avg (This Year)

No incidents recorded for Department of Defense Office of Small Business Programs in 2026.

Incidents

Incidents vs Armed Forces Industry Avg (This Year)

No incidents recorded for United States Department of War in 2026.

Incidents

Incident History - Department of Defense Office of Small Business Programs (X = Date, Y = Severity)

Department of Defense Office of Small Business Programs cyber incidents detection timeline including parent company and subsidiaries.

R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Incident History - United States Department of War (X = Date, Y = Severity)

United States Department of War cyber incidents detection timeline including parent company and subsidiaries.

No timeline data available
R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Notable Incidents

Last Cyber / HR Incidents / Global...
Department of Defense Office of Small Business Programs

Department of Defense Office of Small Business Programs

Incidents
🔒 Incident : Vulnerability
DOD405030625
United States Department of War

United States Department of War

Incidents
No explicit notable incidents reported.

FAQ

Between Department of Defense Office of Small Business Programs company and United States Department of War company, which one has the best AI Cybersecurity Score ?
Between Department of Defense Office of Small Business Programs company and United States Department of War company, which one has experienced more cyber incidents in the past ?
Between Department of Defense Office of Small Business Programs company and United States Department of War company, which one has experienced more cyber incidents this year ?
Between Department of Defense Office of Small Business Programs company and United States Department of War company, which one has experienced at least one ransomware attack ?
Between Department of Defense Office of Small Business Programs company and United States Department of War company, which one has experienced at least one data breach ?
Between Department of Defense Office of Small Business Programs company and United States Department of War company, which one has experienced at least one targeted cyberattack ?
Between Department of Defense Office of Small Business Programs company and United States Department of War company, which one has experienced at least one vulnerability ?
Between Department of Defense Office of Small Business Programs company and United States Department of War company, which one holds the most compliance certifications ?
Between Department of Defense Office of Small Business Programs company and United States Department of War company, which one holds the fewest compliance certifications ?
Between Department of Defense Office of Small Business Programs company and United States Department of War company, which one has the most subsidiaries ?
Between Department of Defense Office of Small Business Programs company and United States Department of War company, which one has the largest number of employees ?
Between Department of Defense Office of Small Business Programs and United States Department of War, which company holds both SOC 2 Type 1 certifications ?
Between Department of Defense Office of Small Business Programs and United States Department of War, which company holds both SOC 2 Type 2 certifications ?
Which company is ISO 27001 certified - Department of Defense Office of Small Business Programs or United States Department of War ?
Which company is PCI DSS compliant - Department of Defense Office of Small Business Programs or United States Department of War ?
Between Department of Defense Office of Small Business Programs and United States Department of War, which company complies with HIPAA regulations for healthcare data ?
Between Department of Defense Office of Small Business Programs and United States Department of War, which company complies with GDPR requirements ?

Latest Global CVEs

CVE-2026-83524
SUMMARY

A security vulnerability has been detected in RedPort Optimizer wXa-203, Optimizer wXa-213 and Optimizer wXa-223 up to 20260704. This impacts the function exec of the file /xgatev1/system/datetime.php of the component System Clock. The manipulation leads to command injection. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Date2026-08-31
UPDATED
Date2026-08-31
RISK INFORMATION (Score: 9.9)
CVSS2
Base Score: 9.0
Complexity: LOW
AV:N/AC:L/Au:S/C:C/I:C/A:C
CVSS3
Base Score: 9.9
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
CVSS4
Base Score: 8.6
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
6
EXPLOITABILITY
3.1
CVE-2026-82971
SUMMARY

A vulnerability was determined in QVidium Opera11 3.3.2a26-Ax4x-opera11. This affects an unknown part of the file /cgi-bin/net_tr.cgi of the component CGI Script. This manipulation of the argument ipaddr causes command injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. The vendor explains: "QVidium has now closed its doors and no longer will be able to sell products or provide support." This vulnerability only affects products that are no longer supported by the maintainer.

PUBLISHED
Date2026-08-31
UPDATED
Date2026-08-31
RISK INFORMATION (Score: 10)
CVSS2
Base Score: 10.0
Complexity: LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
CVSS3
Base Score: 10.0
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CVSS4
Base Score: 9.3
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
6
EXPLOITABILITY
3.9
CVE-2026-82957
SUMMARY

A vulnerability was found in hyperledger-firefly firefly up to 1.4.0. The impacted element is the function ValidateOptions of the file internal/events/webhooks/webhooks.go of the component Webhook Subscription. Performing a manipulation of the argument url results in server-side request forgery. Remote exploitation of the attack is possible. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Date2026-08-31
UPDATED
Date2026-08-31
RISK INFORMATION (Score: 7.3)
CVSS2
Base Score: 7.5
Complexity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
CVSS3
Base Score: 7.3
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
CVSS4
Base Score: 5.5
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
3.4
EXPLOITABILITY
3.9
CVE-2026-82954
SUMMARY

A vulnerability was detected in Dokploy up to 0.29.7. This issue affects the function writeTraefikConfigInPath of the file packages/server/src/utils/traefik/application.ts of the component Settings. The manipulation of the argument path results in path traversal. The attack can be launched remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Date2026-08-31
UPDATED
Date2026-08-31
RISK INFORMATION (Score: 9.9)
CVSS2
Base Score: 9.0
Complexity: LOW
AV:N/AC:L/Au:S/C:C/I:C/A:C
CVSS3
Base Score: 9.9
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
CVSS4
Base Score: 8.6
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
6
EXPLOITABILITY
3.1
CVE-2026-82922
SUMMARY

A security vulnerability has been detected in ShopEx ECShop up to 2.5.1. This vulnerability affects the function flow_update_cart of the file /flow.php?step=update_cart. The manipulation of the argument rec_id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Date2026-08-31
UPDATED
Date2026-08-31
RISK INFORMATION (Score: 7.3)
CVSS2
Base Score: 7.5
Complexity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
CVSS3
Base Score: 7.3
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
CVSS4
Base Score: 5.5
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
3.4
EXPLOITABILITY
3.9