Why Report Vulnerabilities?
By disclosing vulnerabilities, WINTERSTEIGER can address them specifically and inform affected customers accordingly. This approach helps us continuously improve the security of our products and provide our customers with the best possible support in managing security risks.
If you suspect you have discovered a security vulnerability in a WINTERSTEIGER product, please report it via email or the contact form.
Please include the following information in your report:
  • Affected machine
  • Affected version
  • Type of vulnerability (CWE-ID, CVE-ID, if available)
  • Name of the organization
  • Email
  • Phone
  • Country
What happens to your report?
WINTERSTEIGER ensures that the information provided is made available exclusively to a limited group of authorized employees with the appropriate expertise—the WINTERSTEIGER Product Security Incident Response Team (PSIRT). Unauthorized internal or external parties do not have access to this information.
The identity and contact information of the person submitting the report will be treated confidentially and will not be disclosed in public announcements (notices, security bulletins) unless expressly requested. The WINTERSTEIGER PSIRT will investigate the reported vulnerability and contact you as soon as possible.
Stay informed at
The WINTERSTEIGER PSIRT analyzes all incoming reports of security issues and publishes security advisories for confirmed vulnerabilities affecting WINTERSTEIGER products that require measures such as software updates, upgrades, or other actions on the part of the customer.
As part of its commitment to continuous improvement, WINTERSTEIGER provides information to help customers and operators assess the impact of security vulnerabilities and operate their systems securely.