Report a security issue

Your reports help us continuously improve the security of our products. Through this page, customers, partners, security researchers, and other third parties can confidentially report potential vulnerabilities or security issues to our Product Security Team. Every report is carefully reviewed and processed as quickly as possible.

Go to the report form

What is this form for?

For reporting vulnerabilities, security-relevant malfunctions or configuration issues in barox products (switches, media converters, accessories) and their firmware. For general support requests, please use the regular support channels.

Coordinated Vulnerability Disclosure

We follow the principle of coordinated disclosure: we confirm receipt of your report, investigate it with priority, keep you informed of progress on request, and coordinate the timing of any publication with you. We ask you not to publish details of the vulnerability before a fix is available. We will not pursue legal action against reporters who act in good faith and follow these principles.

Important note on confidential data

Do not submit confidential customer data, passwords or production credentials. Replace such values in logs and screenshots with placeholders. Personal data must be limited to what is strictly necessary.

Anonymous reporting available

You can decide whether or not to provide your contact details. If you do provide them, we can contact you directly if we have any follow-up questions and keep you informed about the status of your report. Of course, you may also submit your report anonymously.

EU Cyber Resilience Act

As a manufacturer, barox handles vulnerability reports in accordance with the EU Cyber Resilience Act (CRA), including the notification obligations towards the competent authorities for actively exploited vulnerabilities and severe security incidents.