Comparison Overview

FlorStar Sales Inc.

VS

Sonepar

FlorStar Sales Inc.

1075 Taylor Rd, Romeoville, IL, 60446, US
Last Update: 2025-03-05 (UTC)
Between 900 and 1000

Excellent

FlorStar Sales, Inc. provides residential and commercial flooring solutions and a host of logistics services to our clients. FlorStar is more than just a flooring distributor. We are a business partner who values both vendors and customers. We offer high-quality flooring, flooring sundries, and acoustical-control products from reputable manufacturers. Our diversity allows FlorStar to provide clients floor covering distribution and technical solutions from the subfloor up.

NAICS: 424
NAICS Definition:
Employees: 84
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Sonepar

25 rue dโ€šร„รดAstorg Paris, Paris 75008, FR
Last Update: 2025-05-06 (UTC)

Strong

Between 800 and 900

Sonepar is an independent family-owned company standing as the world leader in B-to-B distribution of electrical equipment, solutions, and services. In 2023, Sonepar achieved sales of โ€šร‡ยจ33.3 billion. Present in 40 countries with a dense network of brands, the Group is leading an ambitious transformation to make its customersโ€šร„รด lives easier providing them an omnichannel experience and sustainable solutions in the building, industry, and energy markets. Soneparโ€šร„รดs 45,000 associates are committed to accelerating the worldโ€šร„รดs electrification and driven by a shared Purpose: Powering Progress for Future Generations.

NAICS: 42
NAICS Definition: Wholesale Trade
Employees: 10,001+
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/florstar-sales-inc-.jpeg
FlorStar Sales Inc.
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
https://images.rankiteo.com/companyimages/sonepar.jpeg
Sonepar
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
Compliance Summary
FlorStar Sales Inc.
100%
Compliance Rate
0/4 Standards Verified
Sonepar
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Wholesale Industry Average (This Year)

No incidents recorded for FlorStar Sales Inc. in 2025.

Incidents vs Wholesale Industry Average (This Year)

No incidents recorded for Sonepar in 2025.

Incident History โ€” FlorStar Sales Inc. (X = Date, Y = Severity)

FlorStar Sales Inc. cyber incidents detection timeline including parent company and subsidiaries

Incident History โ€” Sonepar (X = Date, Y = Severity)

Sonepar cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/florstar-sales-inc-.jpeg
FlorStar Sales Inc.
Incidents

No Incident

https://images.rankiteo.com/companyimages/sonepar.jpeg
Sonepar
Incidents

No Incident

FAQ

FlorStar Sales Inc. company company demonstrates a stronger AI risk posture compared to Sonepar company company, reflecting its advanced AI governance and monitoring frameworks.

Historically, Sonepar company has disclosed a higher number of cyber incidents compared to FlorStar Sales Inc. company.

In the current year, Sonepar company and FlorStar Sales Inc. company have not reported any cyber incidents.

Neither Sonepar company nor FlorStar Sales Inc. company has reported experiencing a ransomware attack publicly.

Neither Sonepar company nor FlorStar Sales Inc. company has reported experiencing a data breach publicly.

Neither Sonepar company nor FlorStar Sales Inc. company has reported experiencing targeted cyberattacks publicly.

Neither FlorStar Sales Inc. company nor Sonepar company has reported experiencing or disclosing vulnerabilities publicly.

Neither FlorStar Sales Inc. company nor Sonepar company has publicly disclosed detailed information about the number of their subsidiaries.

FlorStar Sales Inc. company employs more people globally than Sonepar company, reflecting its scale as a Wholesale.

Latest Global CVEs (Not Company-Specific)

Description

Flowise is a drag & drop user interface to build a customized large language model flow. In versions prior to 3.0.8, WriteFileTool and ReadFileTool in Flowise do not restrict file path access, allowing authenticated attackers to exploit this vulnerability to read and write arbitrary files to any path in the file system, potentially leading to remote command execution. Flowise 3.0.8 fixes this vulnerability.

Risk Information
cvss3
Base: 9.9
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Description

A flaw has been found in code-projects E-Commerce Website 1.0. Affected is an unknown function of the file /pages/supplier_add.php. Executing manipulation of the argument supp_email can lead to sql injection. The attack may be launched remotely. The exploit has been published and may be used.

Risk Information
cvss2
Base: 6.5
Severity: LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
cvss3
Base: 6.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was detected in code-projects E-Commerce Website 1.0. This impacts an unknown function of the file /pages/product_add.php. Performing manipulation of the argument prod_name results in sql injection. The attack may be initiated remotely. The exploit is now public and may be used.

Risk Information
cvss2
Base: 6.5
Severity: LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
cvss3
Base: 6.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security vulnerability has been detected in code-projects Voting System 1.0. This affects an unknown function of the file /admin/voters_add.php. Such manipulation of the argument photo leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

Risk Information
cvss2
Base: 5.8
Severity: LOW
AV:N/AC:L/Au:M/C:P/I:P/A:P
cvss3
Base: 4.7
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 5.1
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

MongoDB Connector for BI installation viaย MSIย on Windows leaves ACLs unset on custom install directories allows Privilege Escalation.This issue affects MongoDB Connector for BI: from 2.0.0 through 2.14.24.

Risk Information
cvss4
Base: 8.8
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X