Comparison Overview

OnTask.io is now Docubee

VS

CRIS; A Autonomous Society under the Ministry of Indian Railways

OnTask.io is now Docubee

4001 N Riverside Dr, Tampa, FL, 33603, US
Last Update: 2025-03-08 (UTC)

Excellent

OnTask is now Docubee Docubee, an Accusoft brand, is a simple contract automation platform that lets businesses create, manage, sign, and track digital contracts in one secure platform. Docubee powers contracts by enabling users to gather vital customer data, create contracts using tools like generative AI or pre-built templates, and connect pieces of the process with dynamic workflows. Users can integrate Docubee with their existing site or platform via the API or connect to thousands of apps and CRMs using native and webhook-powered integrations. To learn more and stay up to date with our latest offerings, please visit our new LinkedIn page linked below or head over to docubee.com.

NAICS: 511
NAICS Definition:
Employees: 12
Subsidiaries: 1
12-month incidents
0
Known data breaches
0
Attack type number
0

CRIS; A Autonomous Society under the Ministry of Indian Railways

CRIS Chanakyapuri New Delhi, Delhi 110021, IN
Last Update: 2025-03-14 (UTC)

Excellent

Between 900 and 1000

Ministry of Railways established the CENTRE FOR RAILWAY INFORMATION SYSTEMS (CRIS), Chanakya Puri, New Delhi - 21 to be an umbrella organisation for all computer activities on Indian Railways (IR).They also entrusted it with the task of design, development and implementation of the FOIS, alongwith its associated communications infrastructure. The Centre started functioning from July,1987.It is a registered society having an autonomous status and headed by Managing Director .CRIS is mainly a project oriented organisation engaged in development of major computer systems on the Railways.

NAICS: 511
NAICS Definition:
Employees: 10,001+
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/ontask.io.jpeg
OnTask.io is now Docubee
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
https://images.rankiteo.com/companyimages/cris.jpeg
CRIS; A Autonomous Society under the Ministry of Indian Railways
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
Compliance Summary
OnTask.io is now Docubee
100%
Compliance Rate
0/4 Standards Verified
CRIS; A Autonomous Society under the Ministry of Indian Railways
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Software Development Industry Average (This Year)

No incidents recorded for OnTask.io is now Docubee in 2025.

Incidents vs Software Development Industry Average (This Year)

No incidents recorded for CRIS; A Autonomous Society under the Ministry of Indian Railways in 2025.

Incident History โ€” OnTask.io is now Docubee (X = Date, Y = Severity)

OnTask.io is now Docubee cyber incidents detection timeline including parent company and subsidiaries

Incident History โ€” CRIS; A Autonomous Society under the Ministry of Indian Railways (X = Date, Y = Severity)

CRIS; A Autonomous Society under the Ministry of Indian Railways cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/ontask.io.jpeg
OnTask.io is now Docubee
Incidents

No Incident

https://images.rankiteo.com/companyimages/cris.jpeg
CRIS; A Autonomous Society under the Ministry of Indian Railways
Incidents

No Incident

FAQ

Both OnTask.io is now Docubee company and CRIS; A Autonomous Society under the Ministry of Indian Railways company demonstrate a comparable AI risk posture, with strong governance and monitoring frameworks in place.

Historically, CRIS; A Autonomous Society under the Ministry of Indian Railways company has disclosed a higher number of cyber incidents compared to OnTask.io is now Docubee company.

In the current year, CRIS; A Autonomous Society under the Ministry of Indian Railways company and OnTask.io is now Docubee company have not reported any cyber incidents.

Neither CRIS; A Autonomous Society under the Ministry of Indian Railways company nor OnTask.io is now Docubee company has reported experiencing a ransomware attack publicly.

Neither CRIS; A Autonomous Society under the Ministry of Indian Railways company nor OnTask.io is now Docubee company has reported experiencing a data breach publicly.

Neither CRIS; A Autonomous Society under the Ministry of Indian Railways company nor OnTask.io is now Docubee company has reported experiencing targeted cyberattacks publicly.

Neither OnTask.io is now Docubee company nor CRIS; A Autonomous Society under the Ministry of Indian Railways company has reported experiencing or disclosing vulnerabilities publicly.

OnTask.io is now Docubee company has more subsidiaries worldwide compared to CRIS; A Autonomous Society under the Ministry of Indian Railways company.

OnTask.io is now Docubee company employs more people globally than CRIS; A Autonomous Society under the Ministry of Indian Railways company, reflecting its scale as a Software Development.

Latest Global CVEs (Not Company-Specific)

Description

An issue was discovered in chinabugotech hutool before 5.8.4 allowing attackers to execute arbitrary expressions that lead to arbitrary method invocation and potentially remote code execution (RCE) via the QLExpressEngine class.

Description

A weakness has been identified in JeecgBoot up to 3.8.2. The impacted element is an unknown function of the file /sys/role/exportXls. This manipulation causes improper authorization. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 4.0
Severity: LOW
AV:N/AC:L/Au:S/C:P/I:N/A:N
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security flaw has been discovered in JeecgBoot up to 3.8.2. The affected element is an unknown function of the file /sys/user/exportXls of the component Filter Handler. The manipulation results in improper authorization. The attack may be performed from remote. The exploit has been released to the public and may be exploited. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 4.0
Severity: LOW
AV:N/AC:L/Au:S/C:P/I:N/A:N
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was identified in JeecgBoot up to 3.8.2. Impacted is an unknown function of the file /sys/tenant/deleteBatch. The manipulation of the argument ids leads to improper authorization. The attack is possible to be carried out remotely. The complexity of an attack is rather high. The exploitability is considered difficult. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 2.1
Severity: HIGH
AV:N/AC:H/Au:S/C:P/I:N/A:N
cvss3
Base: 3.1
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
cvss4
Base: 2.3
Severity: HIGH
CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was determined in JeecgBoot up to 3.8.2. This issue affects some unknown processing of the file /api/getDepartUserList. Executing manipulation of the argument departId can lead to improper authorization. The attack can be executed remotely. This attack is characterized by high complexity. The exploitability is assessed as difficult. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 2.1
Severity: HIGH
AV:N/AC:H/Au:S/C:P/I:N/A:N
cvss3
Base: 3.1
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
cvss4
Base: 2.3
Severity: HIGH
CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X