Reporting a Vulnerability

Reporting a Vulnerability

We accept vulnerability reports via the PSIRT form or via PSIRT@zpesystems.com . Reports may be submitted anonymously. If you share contact information, we will acknowledge receipt of your report within 2 business days.

We do not support PGP-encrypted emails. For particularly sensitive information, submit through our HTTPS web form.


For more information, please, visit our PSIRT / CVE page: 
https://psirt.zpesystems.com



    • Related Articles

    • OpenSSL 3.0 Vulnerability - CVE-2022-3602 and CVE-2022-3786

       OpenSSL released version 3.0.7 on Nov 1st, 2022 - patching two related vulnerabilities both currently rated as "High". Initially, CVE-2022-3602 was rated "Critical" and downgraded after analysis.   Currently, there are two production versions of ...
    • My NodeGrid is Reporting Only Total Power From Eaton UPS

      If you have added an Eaton UPS to the NodeGrid as 'device console',  and enabled Monitoring, but it is reporting only Total Power - and not getting other information such as humidity, battery level, etc., make sure that the Management setting is ...
    • Is Nodegrid OS or ZPE Cloud affected by Apache Log4j vulnerabilities?

      CVE-2021-44228: While ZPE Systems has identified Nodegrid versions v4.2.x, v5.0x, v5.2.x to be possibly affected by the CVE-2021-44228, we could not yet confirm that the systems can be exploited.  Regardless, we released new version to fix such ...