Report a security vulnerability

Have you discovered a potential security vulnerability in a product you purchased through VIDEOR?

Please report it to us here.

When you will hear from us

We will acknowledge receipt within 5 business days and provide a substantive response within 10 business days.

If your report concerns a product from another manufacturer, we will forward it to that manufacturer's vulnerability reporting contact.

Other ways to report a vulnerability

For details on how we handle reports, please read our Coordinated Vulnerability Disclosure Policy .

Vulnerability report form

01 Affected product

question-mark-circle
Shown on the device, the packaging or in the user interface.
question-mark-circle
If unknown, please describe it as precisely as possible.

eneo and SOLVIDO are VIDEOR brands. Reports concerning these brands are handled directly by VIDEOR. jetrics is VIDEOR’s accessories brand. Reports concerning jetrics products are handled in consultation with the original manufacturer. For third-party brands, we forward your report promptly to the manufacturer’s designated reporting contact and inform you of the recipient.

02 The vulnerability

question-mark-circle
Without reproducible steps, our analysis will take considerably longer.
Affected component or interface
Access required
Login required
User interaction required
Possible impact

03 Exploitation and urgency

Is there any indication that the vulnerability has actually been exploited?
Already publicly known?
Public exploit available?
Have you already reported the vulnerability elsewhere?

04 About you — optional, anonymous reporting is possible

Anonymous report
question-mark-circle
If so, please leave name, organisation, email and phone empty. We will then be unable to confirm receipt or ask follow-up questions, and can only credit you under a pseudonym.
question-mark-circle
Only if you are not reporting anonymously.
question-mark-circle
Only if you are not reporting anonymously.
question-mark-circle
Only needed if you would like a response. Only if you are not reporting anonymously.
question-mark-circle
Only if you are not reporting anonymously.
question-mark-circle
Only if you are not reporting anonymously.
question-mark-circle
Only if you are not reporting anonymously.
question-mark-circle
Only if you are not reporting anonymously.
Updates
question-mark-circle
Only if you are not reporting anonymously.

05 Disclosure and credit — anonymous reports can only be credited under a pseudonym

Preferred period until publication
Credit in our acknowledgements

06 Attachments

question-mark-circle
Logs, screenshots, network captures, proof of concept. Maximum 25 MB per report.

Please do not upload real recordings showing identifiable people. Video and audio material from live operation regularly contains personal data of third parties. Redact such content or describe the issue instead.

07 Consent and notices

Data protection
Sharing of contact details

Our commitment. We will not take legal action against you as long as you have acted in good faith in finding and reporting the vulnerability: no impairment of the availability, integrity or confidentiality of production systems, no access to other people's data beyond what is necessary to demonstrate the issue, and no disclosure to third parties before the coordinated publication.

You can also submit your report directly to CERT-Bund at the German Federal Office for Information Security (BSI), the coordinating CSIRT designated for Germany.