Comparison Overview

United States Sentencing Commission

VS

VCAT

United States Sentencing Commission

One Columbus Circle, N.E., Suite 2-500, South Lobby, Washington, District of Columbia, 20002-8040, US
Last Update: 2025-12-05
Between 750 and 799

The U.S. Sentencing Commission, a bipartisan, independent agency located in the judicial branch of government, was created by Congress in 1984 to reduce sentencing disparities and promote transparency and proportionality in sentencing. The Commission collects, analyzes, and distributes a broad array of information on federal sentencing practices, continuously establishing and amending sentencing guidelines for the judicial branch and assisting the other branches in developing effective and efficient crime policy. Related social comment policies: https://www.ussc.gov/about/privacy-security-and-comment-policy

NAICS: 922
NAICS Definition:
Employees: 67
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

VCAT

55 King Street , Melbourne, Victoria, AU, 3000
Last Update: 2025-12-02
Between 750 and 799

The Victorian Civil and Administrative Tribunal (VCAT) provides fair, efficient and affordable justice for the Victorian community. We do this by making decisions about a wide range of cases or by helping people to resolve disputes. We're part of Victoria's court system, but less formal than a court. You can present your case yourself, without a lawyer. We help resolve disputes about renting, guardianship, products and services, owners corporations, building and construction, powers of attorney, planning permits, human rights matters, and many more. We do this by helping people to reach an agreement and settle their case, or we make a decision at a hearing that everyone involved must follow.

NAICS: 92211
NAICS Definition: Courts
Employees: 302
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/us-sentencing-commission.jpeg
United States Sentencing Commission
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/vcat-au.jpeg
VCAT
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
United States Sentencing Commission
100%
Compliance Rate
0/4 Standards Verified
VCAT
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Administration of Justice Industry Average (This Year)

No incidents recorded for United States Sentencing Commission in 2025.

Incidents vs Administration of Justice Industry Average (This Year)

No incidents recorded for VCAT in 2025.

Incident History — United States Sentencing Commission (X = Date, Y = Severity)

United States Sentencing Commission cyber incidents detection timeline including parent company and subsidiaries

Incident History — VCAT (X = Date, Y = Severity)

VCAT cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/us-sentencing-commission.jpeg
United States Sentencing Commission
Incidents

No Incident

https://images.rankiteo.com/companyimages/vcat-au.jpeg
VCAT
Incidents

No Incident

FAQ

VCAT company demonstrates a stronger AI Cybersecurity Score compared to United States Sentencing Commission company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, VCAT company has disclosed a higher number of cyber incidents compared to United States Sentencing Commission company.

In the current year, VCAT company and United States Sentencing Commission company have not reported any cyber incidents.

Neither VCAT company nor United States Sentencing Commission company has reported experiencing a ransomware attack publicly.

Neither VCAT company nor United States Sentencing Commission company has reported experiencing a data breach publicly.

Neither VCAT company nor United States Sentencing Commission company has reported experiencing targeted cyberattacks publicly.

Neither United States Sentencing Commission company nor VCAT company has reported experiencing or disclosing vulnerabilities publicly.

Neither United States Sentencing Commission nor VCAT holds any compliance certifications.

Neither company holds any compliance certifications.

Neither United States Sentencing Commission company nor VCAT company has publicly disclosed detailed information about the number of their subsidiaries.

VCAT company employs more people globally than United States Sentencing Commission company, reflecting its scale as a Administration of Justice.

Neither United States Sentencing Commission nor VCAT holds SOC 2 Type 1 certification.

Neither United States Sentencing Commission nor VCAT holds SOC 2 Type 2 certification.

Neither United States Sentencing Commission nor VCAT holds ISO 27001 certification.

Neither United States Sentencing Commission nor VCAT holds PCI DSS certification.

Neither United States Sentencing Commission nor VCAT holds HIPAA certification.

Neither United States Sentencing Commission nor VCAT holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

A vulnerability has been found in TykoDev cherry-studio-TykoFork 0.1. This issue affects the function redirectToAuthorization of the file /.well-known/oauth-authorization-server of the component OAuth Server Discovery. Such manipulation of the argument authorizationUrl leads to os command injection. The attack can be executed remotely. The exploit has been disclosed to the public and may be used.

Risk Information
cvss2
Base: 6.5
Severity: LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
cvss3
Base: 6.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A flaw has been found in code-projects Question Paper Generator up to 1.0. This vulnerability affects unknown code of the file /selectquestionuser.php. This manipulation of the argument subid causes sql injection. Remote exploitation of the attack is possible. The exploit has been published and may be used.

Risk Information
cvss2
Base: 6.5
Severity: LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
cvss3
Base: 6.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability was found in alokjaiswal Hotel-Management-services-using-MYSQL-and-php up to 5f8b60a7aa6c06a5632de569d4e3f6a8cd82f76f. Affected by this vulnerability is an unknown functionality of the file /dishsub.php. The manipulation of the argument item.name results in cross site scripting. It is possible to launch the attack remotely. The exploit has been made public and could be used. This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 3.3
Severity: LOW
AV:N/AC:L/Au:M/C:N/I:P/A:N
cvss3
Base: 2.4
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N
cvss4
Base: 4.8
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A vulnerability has been found in alokjaiswal Hotel-Management-services-using-MYSQL-and-php up to 5f8b60a7aa6c06a5632de569d4e3f6a8cd82f76f. Affected is an unknown function of the file /usersub.php of the component Request Pending Page. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 4.0
Severity: LOW
AV:N/AC:L/Au:S/C:N/I:P/A:N
cvss3
Base: 3.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
cvss4
Base: 5.1
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A flaw has been found in Verysync 微力同步 up to 2.21.3. This impacts an unknown function of the file /rest/f/api/resources/f96956469e7be39d/tmp/text.txt?override=false of the component Web Administration Module. Executing manipulation can lead to unrestricted upload. The attack may be performed from remote. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 6.5
Severity: LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
cvss3
Base: 6.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X