Comparison Overview
VDL Parree

VDL Parree
Spoorstraat 8, 0, Sevenum, Limburg, NL, 5975RK
Last Update: 27/02/2026
VDL Parree is specialized in high tech injection moulded plastic parts for the automotive industry, assemblies and hybrid metal-plastic parts. This special combination together with the possibilities of co-design and production engineering, makes VDL Parree to a valuab...

Mercedes-Benz Research and Development India
Plot No - 5 - P, 1, Whitefield Main Road, near Sathya Sai Baba Hospital, EPIP Zone, Hoodi, Bangalore, 56066, IN
Last Update: 01/04/2026
Mercedes-Benz Research and Development India (MBRDI) is the largest research and development centre for Mercedes-Benz Group AG outside of Germany. With over 27 years of innovation, MBRDI is contributing towards building the world’s most desirable cars, right here from I...
Compliance Ranges Comparison

VDL Parree







Mercedes-Benz Research and Development India






Benchmark & Cyber Underwriting Signals
Incidents vs Motor Vehicle Manufacturing Industry Avg (This Year)
No incidents recorded for VDL Parree in 2026.
Incidents vs Motor Vehicle Manufacturing Industry Avg (This Year)
No incidents recorded for Mercedes-Benz Research and Development India in 2026.
Incident History - VDL Parree (X = Date, Y = Severity)
VDL Parree cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Mercedes-Benz Research and Development India (X = Date, Y = Severity)
Mercedes-Benz Research and Development India cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

VDL Parree

Mercedes-Benz Research and Development India
FAQ
Latest Global CVEs
goshs is a feature-rich single-binary file server for red teamers and developers. Prior to 2.1.5, the httpserver/handler.go sendFile handler opened files using a cleaned path but derived the authorization filename from raw req.URL.Path, so a trailing slash could bypass .goshs ACL-file protection and block-list checks. This issue is fixed in version 2.1.5.
goshs is a feature-rich single-binary file server for red teamers and developers. Prior to 2.1.5, the httpserver/updown.go multipart upload handler split part.FileName() on / but did not reject .., allowing an unauthenticated upload with filename .. to create a file outside the served tree. This issue is fixed in version 2.1.5.
goshs is a feature-rich single-binary file server for red teamers and developers. Prior to 2.1.4, the httpserver/server.go wdGuard handled WebDAV MOVE as a write-only method and did not enforce --no-delete, allowing WebDAV clients to delete or overwrite files via MOVE with Overwrite: T. This issue is fixed in version 2.1.4.
goshs is a feature-rich single-binary file server for red teamers and developers. From 2.1.3 until 2.1.4, the sftpserver/sftpserver.go password handler used Username != "" && Password != "", so running goshs with -b 'admin:' -sftp and no -fkf left both SFTP authentication handlers unset and allowed unauthenticated file access. This issue is fixed in version 2.1.4.
Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.136.Final and 4.2.16.Final, HttpPostRequestEncoder constructs multipart HTTP request bodies by directly concatenating user-supplied filenames and field names into Content-Disposition MIME headers without validating or sanitizing CRLF characters (\r\n). Since MIME headers are delimited by CRLF, an attacker who controls the filename can inject arbitrary MIME headers into the multipart body part. The root cause is that neither the encoder nor the FileUpload implementations' setFilename() methods, which only check for null, neutralize CRLF characters before the filename is embedded into the header. This issue has been fixed in versions 4.1.136.Final and 4.2.16.Final.