Comparison Overview
SÜDWESTBANK - BAWAG AG Niederlassung Deutschland

SÜDWESTBANK - BAWAG AG Niederlassung Deutschland
Rotebühlstraße 125, Stuttgart, 70178, DE
Last Update: 02/04/2026
Die SÜDWESTBANK AG ist eine mittelständische Privatbank, die sich auf das Geschäftsgebiet Baden-Württemberg fokussiert. Sie gehört mit einer Bilanzsumme von über 4 Milliarden Euro zu den größten unabhängigen Finanzinstituten Deutschlands. Vor fast 90 Jahren in Stutt...

Zenith Bank Plc
87 Ajose Adeogun Street,, Lagos, NG
Last Update: 05/08/2026
We are a global financial services provider with presence in Nigeria, the United Kingdom, Ghana, Sierra Leone and Gambia. Operating from our head office in Lagos, Nigeria, we have a network of over 500 branches and business offices in prime commercial centres in all ...
Compliance Ranges Comparison

SÜDWESTBANK - BAWAG AG Niederlassung Deutschland







Zenith Bank Plc






Benchmark & Cyber Underwriting Signals
Incidents vs Banking Industry Avg (This Year)
No incidents recorded for SÜDWESTBANK - BAWAG AG Niederlassung Deutschland in 2026.
Incidents vs Banking Industry Avg (This Year)
Zenith Bank Plc has 94.17% more incidents than the average of all companies with at least one recorded incident.
Incident History - SÜDWESTBANK - BAWAG AG Niederlassung Deutschland (X = Date, Y = Severity)
SÜDWESTBANK - BAWAG AG Niederlassung Deutschland cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Zenith Bank Plc (X = Date, Y = Severity)
Zenith Bank Plc cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

SÜDWESTBANK - BAWAG AG Niederlassung Deutschland

Zenith Bank Plc
FAQ
Latest Global CVEs
ClipBucket V5's web installer fails to properly validate or escape the php_cli_filepath parameter before passing it to shell execution. Unauthenticated attackers can submit a crafted POST request to the installer with a malicious php_cli_filepath value to execute arbitrary commands as the web server user.
- https://github.com/MacWarrior/clipbucket-v5
- https://github.com/MacWarrior/clipbucket-v5/blob/5.5.3-%23153/upload/cb_install/functions_install.php
- https://github.com/MacWarrior/clipbucket-v5/blob/5.5.3-%23153/upload/includes/classes/system.class.php
- https://github.com/MacWarrior/clipbucket-v5/commit/36e7c6cfd81f62a091d2aeef96a8fc2fc2d85dc4
- https://www.vulncheck.com/advisories/clipbucket-v5-5.5.1-through-5.5.3-153-os-command-injection-via-installer-php-cli-filepath-parameter
A vulnerability was detected in TOTOLINK N600R 4.3.0cu.7647_B20210106. The impacted element is the function getCurrentTime of the file /cgi-bin/cstecgi.cgi. Performing a manipulation of the argument ntp_server results in command injection. The attack can be initiated remotely. The exploit is now public and may be used.
- https://github.com/dxz0069/WAVLINK-WN530H4-Command-Injection-in-set_add_routing/blob/main/TOTOLINK_N600R_cstecgi_Time_WiFi_Service_popen_Command_Injection.md
- https://vuldb.com/cve/CVE-2026-79912
- https://vuldb.com/submit/881261
- https://vuldb.com/vuln/395062
- https://vuldb.com/vuln/395062/cti
- https://www.totolink.net/
A security vulnerability has been detected in TOTOLINK N600R 4.3.0cu.7647_B20210106. The affected element is the function setSystemConfig of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Such manipulation of the argument Hostname leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.
- https://github.com/dxz0069/WAVLINK-WN530H4-Command-Injection-in-set_add_routing/blob/main/TOTOLINK_N600R_cstecgi_strcpy_sprintf_Multi_Function_Stack_Overflow.md
- https://vuldb.com/cve/CVE-2026-79911
- https://vuldb.com/submit/881258
- https://vuldb.com/vuln/395061
- https://vuldb.com/vuln/395061/cti
- https://www.totolink.net/
Doorkeeper OpenID Connect implements an OpenID Connect authentication provider for Rails applications on top of Doorkeeper. Prior to 1.10.4, the Dynamic Client Registration (DCR) endpoint persists client-supplied scopes without validating them against the server's configured scope set. Under certain conditions, this allows a self-registered client to obtain scopes beyond what the server intended to grant. In DynamicClientRegistrationController#application_params, the scopes attribute is assigned directly from params[:scope] with no validation against Doorkeeper.configuration.scopes or optional_scopes. Combined with enforce_configured_scopes being off by default and Doorkeeper's ScopeChecker prioritizing application-level scopes over server-level scopes, this creates a privilege escalation path. This issue is fixed in version 1.10.4.
Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Drupal core allows Stored XSS. This issue affects Drupal core versions: from 0.0.0 to 10.6.13, from 11.3.0 to 11.3.14, from 11.4.0 to 11.4.4, from 0.0.0 to 11.0.*, from 0.0.0 to 11.1.*, from 0.0.0 to 11.2.*.