Secure systems and secure data are of critical importance. Have you encountered a vulnerability in our systems? Please report it without delay so we can address it.
Pleasesubmitvulnerability reportsviaour web formoremailtocsirt@muni.czwith the subject line "Vulnerability Report: [Brief Description]".
Your report should include:
Clear description of the vulnerability
Steps to reproduce (mayincludescreenshotsortools used)
Potential impact of the vulnerability
Time frame during which the testing took place
Any supporting materials (proof of concept code, etc.)
Subject to necessary verification, if the vulnerability report complies with our policy, please indicate whether you would like to be acknowledged in our Security Hall of Fame.
Acknowledgment & Evaluation: The report will be assessed, and the team will acknowledge it or request additional information to confirm the vulnerability. All reports are processed within 2 business days.
Resolution:Verified vulnerabilities will be remediated. We try to fix vulnerabilities within a week’s time, but more complicated reports can take longer.
Recognition:If agreed, your contribution will be acknowledged in our Security Hall of Fame. We cannot offer any monetary rewards, but we hope the public recognition of your efforts will provide sufficient motivation in making the internet a little bit more secure place.
Reported a publicly accessible WordPress XML-RPC interface that, if improperly configured, may increase the risk of misuse, for example for brute-force or DDoS attacks.