Product Cybersecurity


Report potential security vulnerabilities in UWT products. 

UWT takes the cybersecurity of its products seriously throughout their entire lifecycle. Our Product Security Incident Response Team (PSIRT) serves as the central point of contact for reporting and coordinating potential security vulnerabilities in products manufactured by UWT GmbH and its subsidiaries. 

The UWT PSIRT coordinates the assessment and handling of reported security vulnerabilities and, where necessary, publishes Security Advisories regarding confirmed vulnerabilities and available remediation or risk mitigation measures. 

We encourage customers, security researchers, and other interested parties to responsibly report potential security vulnerabilities in UWT products. Through coordinated disclosure, vulnerabilities can be thoroughly investigated and appropriate measures implemented before information is made publicly available. 

Responsible Disclosure Policy


Security Advisories

UWT publishes Security Advisories here for confirmed vulnerabilities that are relevant to our customers, where publication is deemed necessary. These advisories may include information about affected products, potential impact, and available remediation or mitigation measures. 

There are currently no published Security Advisories. 


Report a Security Vulnerability 

UWT GmbH takes reports of potential security vulnerabilities in its products seriously and welcomes the responsible disclosure of vulnerabilities. UWT supports the coordinated disclosure of confirmed vulnerabilities and works closely with reporting individuals throughout the process. 

Please report suspected vulnerabilities to: 

 

To help us evaluate and process your report as efficiently as possible, please provide the following information where available: 

  • Contact Information: Your contact details for any follow-up questions. 
  • Description of the Vulnerability: A description of the suspected security issue. 
  • Potential Impact: What impact have you observed, or what impact do you believe may be possible? 
  • Affected Products: Product name, type/model code, serial number, and firmware or software version, where available. 
  • Reproduction Details: Conditions and steps required to reproduce the suspected vulnerability. 

This contact address is intended exclusively for reporting potential security vulnerabilities in UWT products. For general product inquiries or technical support, please use the standard UWT service and support channels. 

 

What Happens After You Submit a Report? 

UWT will generally acknowledge receipt of a report within two business days. We will then review the information provided and, if the vulnerability is confirmed, take appropriate measures to remediate or mitigate the associated risk. 

We ask that any public disclosure be coordinated with UWT to allow sufficient time for vulnerability assessment and, where necessary, the development of appropriate remediation or mitigation measures. 

 

Responsible Disclosure 

We ask reporters to act responsibly, refrain from causing disruption to systems or data, and allow UWT adequate time to assess and address reported vulnerabilities. 

As a guideline for coordinated disclosure, we consider a period of up to 90 days from receipt of the report to be appropriate. If a suitable fix or mitigation becomes available sooner, coordinated disclosure may take place earlier by mutual agreement. If the complexity of the issue requires additional time, we will coordinate the next steps with the reporting party. 

 

Good Faith Security Research 

UWT will generally not initiate legal action against individuals who, in good faith and in accordance with our Responsible Disclosure Policy, report vulnerabilities discovered through security research. This does not apply in cases of intentional misuse, unauthorized access to or modification of data, data theft, deliberate disruption of products or systems, or any other unlawful activities.