Report a vulnerability

How to report a security vulnerability?

If you believe that you have identified a potential security vulnerability or incident related to a CEMB product, please fill the below form. The CEMB PSIRT encourages responsible disclosure of vulnerabilities with a view to the longer-term benefits they bring in terms of fixed vulnerabilities, better-informed customers, and continuous improvement of our security. We kindly ask to work with us on a coordinated disclosure, avoiding publication until our development groups have created an appropriate fix/mitigation.

    Affected components*

    Vulnerability type submitted*

    How would you describe the vulnerability type (e.g. XSS, Buffer Overflow, Hardcoded credentials,…)?

    Vulnerability trigger*

    Can you provide any proof-of-concept (PoC) exploit code for triggering the vulnerability, alternately network traces (e.g. pcaps) or a description how the vulnerability can be triggered?

    Vulnerability effects*

    Did you observe any effects that the vulnerability leads to/induces?

    Confidentiality of vulnerability*

    Was the vulnerability publicly disclosed already, or do you have any concrete disclosure plans?