Comparison Overview

Universal Corporation

VS

Philip Morris International

Universal Corporation

Richmond, VA, US, 23235
Last Update: 2025-12-09

Universal is headquartered in Richmond, Virginia, and is the leading global leaf tobacco supplier. Tobacco sourcing and processing has been the Company's principal focus since its founding in 1918. The largest portion of the Company's business involves procuring and processing flue-cured, burley, and dark air-cured leaf tobacco for manufacturers of consumer tobacco products. Over the past few years, Universal has expanded its business through a series of acquisitions to develop a plant-based ingredients business segment to support the food and beverage markets which will provide future growth opportunities for Universal. We are now a global business-to-business agri-products supplier to consumer product manufacturers, that sources and processes leaf tobacco and plant-based ingredients. Through our plant-based ingredients platform, we provide a variety of value-added manufacturing processes to produce high-quality, specialty vegetable- and fruit-based ingredients as well as botanical extracts and flavorings for human and pet food end markets. Universal conducts business in more than 30 countries on five continents and employs over 25,000 permanent and seasonal workers. Domestically, Universal employs over 1,000 permanent and seasonal workers, and its revenues ending March 31, 2023, were $2.6 billion.

NAICS: 30
NAICS Definition: Manufacturing
Employees: 19
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Philip Morris International

Avenue de Rhodanie 50, None, Lausanne, None, CH, 1007
Last Update: 2025-12-09
Between 800 and 849

Philip Morris International (PMI) is a leading international consumer goods company working to deliver a smoke-free future and evolving its portfolio for the long term to include products outside of the tobacco and nicotine sector. Since 2008, PMI has invested more than USD 14 billion to develop, scientifically substantiate and commercialize innovative smoke-free products for adults who would otherwise continue to smoke, with the goal of completely ending the sale of cigarettes. In November 2022, PMI acquired Swedish Match – a leader in oral nicotine delivery – creating a global smoke-free champion led by the companies’ IQOS and ZYN brands. As of Q1 2025, PMI's smoke-free products were available for sale in 95 markets and smoke-free products accounted for approximately 42% of net revenues. With a strong foundation and significant expertise in life sciences, PMI announced in February 2021 its ambition to expand into wellness and healthcare areas and aims to enhance life through the delivery of seamless health experiences. For more information, please visit www.pmi.com and www.pmiscience.com. Our priority is to attract, support and keep with us diverse and unique individuals. Our global workforce of more than 69,000 people is one of our greatest strengths and the key to our success as a company. Our employees speak more than 80 languages and come from all corners of the world. PMI has also been certified as a “Global Top Employer” for the seventh consecutive year, in recognition of the high standards of excellence in our working environment and the exceptional development opportunities we offer. If you come into our offices or meet our people, you will quickly realize that at PMI everyone has the opportunity to make a difference and build phenomenal careers.

NAICS: 30
NAICS Definition: Manufacturing
Employees: 63,063
Subsidiaries: 3
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/universalcorp.jpeg
Universal Corporation
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/insidepmi.jpeg
Philip Morris International
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Universal Corporation
100%
Compliance Rate
0/4 Standards Verified
Philip Morris International
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Manufacturing Industry Average (This Year)

No incidents recorded for Universal Corporation in 2025.

Incidents vs Manufacturing Industry Average (This Year)

No incidents recorded for Philip Morris International in 2025.

Incident History — Universal Corporation (X = Date, Y = Severity)

Universal Corporation cyber incidents detection timeline including parent company and subsidiaries

Incident History — Philip Morris International (X = Date, Y = Severity)

Philip Morris International cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/universalcorp.jpeg
Universal Corporation
Incidents

No Incident

https://images.rankiteo.com/companyimages/insidepmi.jpeg
Philip Morris International
Incidents

No Incident

FAQ

Philip Morris International company demonstrates a stronger AI Cybersecurity Score compared to Universal Corporation company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, Philip Morris International company has disclosed a higher number of cyber incidents compared to Universal Corporation company.

In the current year, Philip Morris International company and Universal Corporation company have not reported any cyber incidents.

Neither Philip Morris International company nor Universal Corporation company has reported experiencing a ransomware attack publicly.

Neither Philip Morris International company nor Universal Corporation company has reported experiencing a data breach publicly.

Neither Philip Morris International company nor Universal Corporation company has reported experiencing targeted cyberattacks publicly.

Neither Universal Corporation company nor Philip Morris International company has reported experiencing or disclosing vulnerabilities publicly.

Neither Universal Corporation nor Philip Morris International holds any compliance certifications.

Neither company holds any compliance certifications.

Philip Morris International company has more subsidiaries worldwide compared to Universal Corporation company.

Philip Morris International company employs more people globally than Universal Corporation company, reflecting its scale as a Manufacturing.

Neither Universal Corporation nor Philip Morris International holds SOC 2 Type 1 certification.

Neither Universal Corporation nor Philip Morris International holds SOC 2 Type 2 certification.

Neither Universal Corporation nor Philip Morris International holds ISO 27001 certification.

Neither Universal Corporation nor Philip Morris International holds PCI DSS certification.

Neither Universal Corporation nor Philip Morris International holds HIPAA certification.

Neither Universal Corporation nor Philip Morris International holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

A weakness has been identified in itsourcecode Online Pet Shop Management System 1.0. This vulnerability affects unknown code of the file /pet1/addcnp.php. This manipulation of the argument cnpname causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security flaw has been discovered in Tenda AX9 22.03.01.46. This affects the function image_check of the component httpd. The manipulation results in use of weak hash. It is possible to launch the attack remotely. A high complexity level is associated with this attack. It is indicated that the exploitability is difficult. The exploit has been released to the public and may be exploited.

Risk Information
cvss2
Base: 2.6
Severity: HIGH
AV:N/AC:H/Au:N/C:N/I:P/A:N
cvss3
Base: 3.7
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
cvss4
Base: 6.3
Severity: HIGH
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A weakness has been identified in code-projects Student File Management System 1.0. This issue affects some unknown processing of the file /admin/update_student.php. This manipulation of the argument stud_id causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A security flaw has been discovered in code-projects Student File Management System 1.0. This vulnerability affects unknown code of the file /admin/save_user.php. The manipulation of the argument firstname results in sql injection. The attack can be executed remotely. The exploit has been released to the public and may be exploited.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was identified in code-projects Student File Management System 1.0. This affects an unknown part of the file /admin/update_user.php. The manipulation of the argument user_id leads to sql injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

Risk Information
cvss2
Base: 7.5
Severity: LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
cvss3
Base: 7.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X