Comparison Overview
UC Irvine Division of Career Pathways

UC Irvine Division of Career Pathways
100 Student Services 1, Irvine, 92697, US
Last Update: 18/03/2026
UC Irvine’s Division of Career Pathways (DCP) serves as the hub for career development and preparation for our students, staff, faculty, and recent alumni, as well as a recruitment center for local, regional, national, and global organizations. DCP puts career services...

Tecnológico de Monterrey
Ave. Eugenio Garza Sada 2501 Sur, Colonia Tecnológico, Monterrey, nuevo león, MX, 64849
Last Update: 02/04/2026
The Tecnológico de Monterrey is a private university system with 33 campuses in 26 cities in Mexico, which serves more than 96,000 students in its high school, undergraduate and graduate programs. It also has liaison offices in 12 countries. Through the promotion of ...
Compliance Ranges Comparison

UC Irvine Division of Career Pathways







Tecnológico de Monterrey






Benchmark & Cyber Underwriting Signals
Incidents vs Higher Education Industry Avg (This Year)
No incidents recorded for UC Irvine Division of Career Pathways in 2026.
Incidents vs Higher Education Industry Avg (This Year)
No incidents recorded for Tecnológico de Monterrey in 2026.
Incident History - UC Irvine Division of Career Pathways (X = Date, Y = Severity)
UC Irvine Division of Career Pathways cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Tecnológico de Monterrey (X = Date, Y = Severity)
Tecnológico de Monterrey cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

UC Irvine Division of Career Pathways

Tecnológico de Monterrey
FAQ
Latest Global CVEs
goshs is a feature-rich single-binary file server for red teamers and developers. Prior to 2.1.5, the httpserver/handler.go sendFile handler opened files using a cleaned path but derived the authorization filename from raw req.URL.Path, so a trailing slash could bypass .goshs ACL-file protection and block-list checks. This issue is fixed in version 2.1.5.
goshs is a feature-rich single-binary file server for red teamers and developers. Prior to 2.1.5, the httpserver/updown.go multipart upload handler split part.FileName() on / but did not reject .., allowing an unauthenticated upload with filename .. to create a file outside the served tree. This issue is fixed in version 2.1.5.
goshs is a feature-rich single-binary file server for red teamers and developers. Prior to 2.1.4, the httpserver/server.go wdGuard handled WebDAV MOVE as a write-only method and did not enforce --no-delete, allowing WebDAV clients to delete or overwrite files via MOVE with Overwrite: T. This issue is fixed in version 2.1.4.
goshs is a feature-rich single-binary file server for red teamers and developers. From 2.1.3 until 2.1.4, the sftpserver/sftpserver.go password handler used Username != "" && Password != "", so running goshs with -b 'admin:' -sftp and no -fkf left both SFTP authentication handlers unset and allowed unauthenticated file access. This issue is fixed in version 2.1.4.
Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.136.Final and 4.2.16.Final, HttpPostRequestEncoder constructs multipart HTTP request bodies by directly concatenating user-supplied filenames and field names into Content-Disposition MIME headers without validating or sanitizing CRLF characters (\r\n). Since MIME headers are delimited by CRLF, an attacker who controls the filename can inject arbitrary MIME headers into the multipart body part. The root cause is that neither the encoder nor the FileUpload implementations' setFilename() methods, which only check for null, neutralize CRLF characters before the filename is embedded into the header. This issue has been fixed in versions 4.1.136.Final and 4.2.16.Final.