Reporting a Vulnerability


The security of our products is a top priority for ebm‑papst. If you have identified a potential vulnerability in our products, please contact us.

You can report any vulnerabilities through a central contact:

product.security@de.ebmpapst.com

To ensure we can process your report with the best possible outcome, please provide us with the following information:

  • Affected product (ideally including the version number)
  • Description of the potential problem and possible consequences (if known)
  • If known:
    • Steps to reproduce the issue
    • Proof of concept
    • Suspicion of active exploitation

Our Commitment


  • We will acknowledge receipt and conduct an initial assessment as soon as possible.
  • We will carefully review the report and keep you informed throughout the entire process.
  • We will work to resolve validated vulnerabilities without undue delay
  • Reported information will be shared exclusively with authorized individuals

Safe Harbor Principle


  • We will not take legal action against researchers who:
    • Act in good faith
    • Avoid causing harm, data breaches, or operational disruptions
    • Respect these guidelines
  • The identity of the reporter will not be disclosed.