Edgecore PSIRT & CSIRT

致力于安全、可靠和值得信赖的网络.

报告安全漏洞

Edgecore Networks 致力于提供安全可靠的网络交换机和开放式网络解决方案。我们认识到任何硬件或软件都可能存在未被发现的安全漏洞,因此我们建立了一套正式的漏洞披露流程,使客户、合作伙伴和安全研究人员能够安全便捷地向我们报告问题。

Edgecore PSIRT/CSIRT 负责接收、调查、协调和处理所有与 Edgecore 产品、解决方案和企业数字服务相关的安全报告。我们与客户、合作伙伴和全球安全研究界保持密切联系,以不断加强我们产品和服务的安全性。

如果您认为自己发现了安全漏洞,请根据您发现的问题类型,从下方选择相应的报告渠道:

产品漏洞报告

如果 Edgecore 硬件、固件或软件(e.g. 交换机、路由器)存在漏洞或安全问题

邮件地址:[email protected]

安全漏洞报告

如果出现与 Edgecore 网站、在线服务或数据保护问题相关的漏洞或事件,请立即联系我们。

邮件地址:[email protected]

产品漏洞报告

The Edgecore Product Security Incident Response Team (PSIRT) coordinates the investigation and remediation of security vulnerabilities affecting Edgecore products and solutions.

Our PSIRT works with internal engineering and product teams, customers, security researchers, technology partners, and other stakeholders to evaluate reported vulnerabilities and coordinate appropriate remediation.

Your Security Report Matters

Use the email template below to provide the key information needed for our security team to assess and investigate your report. Simply click “Copy” to copy the template, paste it into your email client, complete the relevant fields, and send your report to [email protected].

Thank you for helping Edgecore build more secure and trusted networking solutions.

Vulnerability Response Process

Edgecore follows a coordinated process to evaluate and address reported security vulnerabilities.

安全漏洞报告

The Edgecore Cybersecurity Incident Response Team (CSIRT) coordinates the response to cybersecurity incidents involving Edgecore’s corporate infrastructure, websites, online services, and information systems.

The CSIRT works with relevant internal teams and external stakeholders to investigate security incidents, contain potential threats, mitigate impact, and support recovery.

Help Us Protect the Edgecore Ecosystem

Use the email template below to provide the key information needed for our security team to assess and investigate the incident. Simply click “Copy” to copy the template, paste it into your email client, complete the relevant fields, and send your report to [email protected].
Thank you for helping Edgecore respond to security incidents and maintain a secure and trusted digital ecosystem.

CSIRT Security Incident Report Email Template
Dear Edgecore CSIRT Team,

I would like to report a potential cybersecurity incident involving an Edgecore service, website, system, or infrastructure.

Incident Information
- Incident Type: [Phishing / Malware / Data Exposure / Account Compromise / Website Security / Other]
- Affected Service / Domain: [Service / Domain]
- Date / Time Observed: [Date and Time, including Time Zone]
- Source / Origin: [IP Address / URL / Email Address, if applicable]

Incident Description
Please provide a detailed description of the observed security incident, including how and when it was identified.

Evidence
- Relevant URL(s): [URL]
- IP Address(es): [IP Address]
- Email Address(es): [Email Address]
- File / Hash: [File Name / SHA-256, if applicable]
- Log Information: [Relevant information]
- Supporting Evidence: [Attached / Available upon request]

Potential Impact
Please describe any potential impact to Edgecore systems, services, customers, partners, employees, or other parties.

Reporter Information
- Name: [Name]
- Organization: [Organization, if applicable]
- Email: [Email Address]
- Preferred Contact Method: [Email / Other]

Please confirm receipt of this report and provide a reference number, if available.

I am available to provide additional information or evidence that may assist your investigation.

Thank you for your prompt attention to this matter.

Best regards,
[Name]
[Organization]
[Contact Information]

Frequently Asked Questions

Please report the issue to Edgecore PSIRT at [email protected]. Include the affected product, firmware or software version, vulnerability description, reproduction steps, and available supporting evidence.

Product, firmware, software, API, and product-management vulnerabilities should generally be reported to PSIRT.

Incidents involving Edgecore websites, corporate infrastructure, online services, phishing, malware, or suspected compromise should generally be reported to CSIRT.

You may submit a report without providing organizational information. However, providing a reliable contact method allows Edgecore to request additional information and coordinate remediation or disclosure with you.

Where applicable, Edgecore may coordinate CVE assignment for confirmed vulnerabilities according to the relevant vulnerability disclosure process.

Please provide enough technical information to reproduce and assess the issue, including the affected product or service, version, vulnerability description, reproduction steps, potential impact, and supporting evidence.

Yes. A Proof of Concept can be helpful when validating and reproducing a vulnerability. Please ensure that attachments do not contain unnecessary passwords, credentials, private keys, or other sensitive information.

We recommend allowing Edgecore reasonable time to investigate and remediate a reported vulnerability before public disclosure. Where appropriate, Edgecore will coordinate disclosure timing and relevant technical information with the reporter.

相关资源

2026年产品目录