Comparison Overview

ZOLL Data Systems

VS

Cox Automotive Inc.

ZOLL Data Systems

11802 Ridge Parkway, Broomfield, CO, 80021, US
Last Update: 2025-03-05 (UTC)
Between 800 and 900

Strong

When your mission is to protect and save lives, efficiency is not just a goal: it’s a must. With integrated software solutions for dispatch, fleet, personnel/resource management, critical patient care data management and transfer, EMS billing, and first responder safety, ZOLL EMS, Fire and Hospital software solutions cover the scope of daily first responder operations to truly simplify and maximize business performance. Based in beautiful Colorado, ZOLL Data is a division of ZOLL Medical Corporation, an Asahi Kasei Group company. For current career opportunities, visit https://www.zolldata.com/careers For more information on ZOLL Medical, visit their LinkedIn page: https://www.linkedin.com/company/13727/

NAICS: 5112
NAICS Definition: Software Publishers
Employees: 249
Subsidiaries: 20
12-month incidents
0
Known data breaches
4
Attack type number
2

Cox Automotive Inc.

3003 Summit Blvd., Atlanta, GA, 30319, US
Last Update: 2025-03-04 (UTC)

Strong

Between 800 and 900

Cox Automotive is the world’s largest automotive services and technology provider. Fueled by the largest breadth of first-party data fed by 2.3 billion online interactions a year, Cox Automotive tailors leading solutions for car shoppers, auto manufacturers, dealers, lenders and fleets. The company has 29,000+ employees on five continents and a portfolio of industry-leading brands that include Autotrader®, Kelley Blue Book®, Manheim®, vAuto®, Dealertrack®, NextGear Capital™, CentralDispatch® and FleetNet America®. Cox Automotive is a subsidiary of Cox Enterprises Inc., a privately-owned, Atlanta-based company with $22 billion in annual revenue.

NAICS: 5112
NAICS Definition: Software Publishers
Employees: 10,230
Subsidiaries: 30
12-month incidents
0
Known data breaches
1
Attack type number
3

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/zolldata.jpeg
ZOLL Data Systems
ISO 27001
Not verified
SOC 2
Not verified
GDPR
No public badge
PCI DSS
No public badge
https://images.rankiteo.com/companyimages/cox-automotive-inc-.jpeg
Cox Automotive Inc.
ISO 27001
Not verified
SOC 2
Not verified
GDPR
No public badge
PCI DSS
No public badge
Compliance Summary
ZOLL Data Systems
100%
Compliance Rate
0/4 Standards Verified
Cox Automotive Inc.
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Software Development Industry Average (This Year)

No incidents recorded for ZOLL Data Systems in 2025.

Incidents vs Software Development Industry Average (This Year)

No incidents recorded for Cox Automotive Inc. in 2025.

Incident History — ZOLL Data Systems (X = Date, Y = Severity)

ZOLL Data Systems cyber incidents detection timeline including parent company and subsidiaries

Incident History — Cox Automotive Inc. (X = Date, Y = Severity)

Cox Automotive Inc. cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/zolldata.jpeg
ZOLL Data Systems
Incidents

Date Detected: 11/2023
Type:Breach
Attack Vector: Phishing
Blog: Blog

Date Detected: 8/2023
Type:Breach
Attack Vector: Phishing
Blog: Blog

Date Detected: 1/2023
Type:Breach
Attack Vector: External System Hack
Blog: Blog
https://images.rankiteo.com/companyimages/cox-automotive-inc-.jpeg
Cox Automotive Inc.
Incidents

Date Detected: 01/2023
Type:Data Leak
Attack Vector: Automated Collection Methods
Blog: Blog

Date Detected: 09/2022
Type:Cyber Attack
Blog: Blog

Date Detected: 12/2021
Type:Breach
Attack Vector: Social Engineering
Blog: Blog

FAQ

Both ZOLL Data Systems company and Cox Automotive Inc. company demonstrate a comparable AI risk posture, with strong governance and monitoring frameworks in place.

ZOLL Data Systems company has faced a higher number of disclosed cyber incidents historically compared to Cox Automotive Inc. company.

In the current year, Cox Automotive Inc. company and ZOLL Data Systems company have not reported any cyber incidents.

Neither Cox Automotive Inc. company nor ZOLL Data Systems company has reported experiencing a ransomware attack publicly.

Both Cox Automotive Inc. company and ZOLL Data Systems company have disclosed experiencing at least one data breach.

Cox Automotive Inc. company has reported targeted cyberattacks, while ZOLL Data Systems company has not reported such incidents publicly.

Neither ZOLL Data Systems company nor Cox Automotive Inc. company has reported experiencing or disclosing vulnerabilities publicly.

Cox Automotive Inc. company has more subsidiaries worldwide compared to ZOLL Data Systems company.

Cox Automotive Inc. company employs more people globally than ZOLL Data Systems company, reflecting its scale as a Software Development.

Latest Global CVEs (Not Company-Specific)

Description

pwn.college DOJO is an education platform for learning cybersecurity. In versions up to and including commit 781d91157cfc234a434d0bab45cbcf97894c642e, the /workspace endpoint contains an improper authentication vulnerability that allows an attacker to access any active Windows VM without proper authorization. The vulnerability occurs in the view_desktop function where the user is retrieved via a URL parameter without verifying that the requester has administrative privileges. An attacker can supply any user ID and arbitrary password in the request parameters to impersonate another user. When requesting a Windows desktop service, the function does not validate the supplied password before generating access credentials, allowing the attacker to obtain an iframe source URL that grants full access to the target user's Windows VM. This impacts all users with active Windows VMs, as an attacker can access and modify data on the Windows machine and in the home directory of the associated Linux machine via the Z: drive. This issue has been patched in commit 467db0b9ea0d9a929dc89b41f6eb59f7cfc68bef. No known workarounds exist.

Risk Information
cvss4
Base: 9.5
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:L/SC:H/SI:H/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Adobe Experience Manager versions 11.6 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field. Exploitation of this issue requires user interaction in that a victim must open a malicious link. Scope is changed.

Risk Information
cvss3
Base: 5.4
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Description

Adobe Experience Manager versions 11.6 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field. Exploitation of this issue requires user interaction in that a victim must open a malicious link. Scope is changed.

Risk Information
cvss3
Base: 5.4
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Description

Adobe Experience Manager versions 11.6 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field. Exploitation of this issue requires user interaction in that a victim must open a malicious link. Scope is changed.

Risk Information
cvss3
Base: 5.4
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Description

Adobe Connect versions 12.9 and earlier are affected by a URL Redirection to Untrusted Site ('Open Redirect') vulnerability. An attacker could leverage this vulnerability to redirect users to malicious websites. Exploitation of this issue requires user interaction in that a victim must click on a crafted link.

Risk Information
cvss3
Base: 3.1
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N