Comparison Overview
LinkedIn China 领英中国

LinkedIn China 领英中国
东三环北路27号嘉铭中心B座11层, 朝阳区, 100020, CN
Last Update: 31/03/2026
LinkedIn创建于 2003 年,总部位于美国加州硅谷,办公室遍及全球30多个城市。领英致力于连接全球职场人士,并协助他们事半功倍,发挥所长。作为全球领先的职场社交平台,LinkedIn用户数已超过6.1亿,覆盖全球200多个国家和地区,每个《财富》世界 500 强公司均有高管加入。LinkedIn拥有多元化经营模式,主要收入来自于所提供的征才解决方案、营销解决方案、销售解决方案及高级订阅帐户。LinkedIn的愿景是为全球30亿劳动力中的每一位创造经济机会,进而绘制世界首个经济图谱。 为了更好地连接中国职场人士,为其提供全球...

Bosch Global Software Technologies
123, Koramangala Industrial Layout,, Hosur Road, Bangalore, Karnataka, IN, 560095
Last Update: 01/04/2026
With our unique ability to offer end-to-end solutions that connect the three pillars of IoT - Sensors, Software, and Services, we enable businesses to move from the traditional to the digital, or improve businesses by introducing a digital element in their products and ...
Compliance Ranges Comparison

LinkedIn China 领英中国







Bosch Global Software Technologies






Benchmark & Cyber Underwriting Signals
Incidents vs Software Development Industry Avg (This Year)
No incidents recorded for LinkedIn China 领英中国 in 2026.
Incidents vs Software Development Industry Avg (This Year)
No incidents recorded for Bosch Global Software Technologies in 2026.
Incident History - LinkedIn China 领英中国 (X = Date, Y = Severity)
LinkedIn China 领英中国 cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Bosch Global Software Technologies (X = Date, Y = Severity)
Bosch Global Software Technologies cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

LinkedIn China 领英中国

Bosch Global Software Technologies
FAQ
Latest Global CVEs
A vulnerability was detected in CodeAstro Student Attendance Management System 1.0. Impacted is an unknown function of the file /attendance-php/Admin/createStudents.php. Performing a manipulation of the argument admissionNumber results in sql injection. Remote exploitation of the attack is possible. The exploit is now public and may be used.
A security vulnerability has been detected in D-Link DCS-935L 1.10.01. This issue affects the function snprintf of the file /web/cgi-bin/greece/rhea of the component HTTP Handler. Such manipulation of the argument data leads to format string. The attack may be launched remotely. The exploit has been disclosed publicly and may be used.
Nefteprodukttekhnika BUK TS-G Gas Station Automation System 2.9.1 through 2.10.2 on Linux contains an Improper Authentication vulnerability (CWE-287) in the system configuration module. The /php/ajax-login.php endpoint returns userid=1 (administrator) in response to any HTTP POST request that supplies arbitrary credentials (e.g., action=dologin&login=<any_value>&pwd=<any_value>), and subsequent privileged endpoints under /php/ajax-main.php and /modules/* do not validate a server-side session. A remote unauthenticated attacker can invoke any administrative action exposed by the configuration module, including reading and modifying user rules, fuel tank gauges, fuel dispensers, relays, cash registers, bank terminals, fuel cards, price and customer displays, cash collection, and pricing rules.
SQL Injection in reports/catalogue_out.pl in Koha Community Koha through 22.11.37, 23.x, 24.x before 24.11.16, 25.05.x before 25.05.11, 25.11.x before 25.11.05, 26.05.x before 26.05.01, and 26.11.x before 26.11.00 allows an authenticated staff user with the Reports module flag to read arbitrary data from the Koha application database via the Filter URL parameter when the Criteria parameter matches /branchcode/. The vulnerable sink in sub calculate concatenates the unmodified Filter request parameter directly into a LIKE clause of the auxiliary $strsth2 statement and executes it via DBI without bound parameters: my $f = @$filters[0]; $f =~ s/\*/%/g; $strsth2 .= " AND $column LIKE '$f' "; This enables error-based SQL injection (e.g., via EXTRACTVALUE) and full read access to sensitive tables including borrowers (password hashes, 2FA secrets, PII), borrower_password_recovery, api_keys, and sessions. Proof of concept (error-based, single request): GET /cgi-bin/koha/reports/catalogue_out.pl?do_it=1&output=screen&Limit=10&Criteria=branchcode&Filter=x'+AND+EXTRACTVALUE(1,CONCAT(0x7e,VERSION(),0x7c,USER(),0x7c,DATABASE(),0x7e))--+- Cookie: CGISESSID=<LIBRARIAN_SESSION> The response body contains the DBI exception leaking the MariaDB version, database user, client IP, and database name, after which arbitrary data can be paged out using LIMIT n,1 / SUBSTRING(...). The vulnerable sink was introduced in commit 6bb77ae3e4 (2008-07-09); CVE-2015-4633 patched the same class in sibling files but did not generalise the fix to reports/catalogue_out.pl. Fixed in Koha 22.11.38, 24.11.16, 25.05.11, 25.11.05, 26.05.01, and 26.11.00 by replacing the raw concatenation with a parameterised placeholder.
The Online Scheduling and Appointment Booking System – Bookly plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'bookly-customer-full-name' cookie in versions up to, and including, 27.2 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. Exploitation requires 'Remember personal information in cookies' setting to be enabled (disabled by default).