Skip to content

Coordinated Vulnerability Disclosure report for "Films & Corporate" (Pathé Films / Pathé Live) #76

@adityaax

Description

@adityaax

Company

Pathé

Program URL

https://www.pathe.com/wp-content/uploads/2023/12/Pathe-Politique-CVD.1.2.EN_.pdf

Contact

No response

Rewards

  • *bounty
  • *recognition
  • *swag

Program type

vdp

Status

active

Description

Pathé do care about the security of their systems, websites and applications as well as the protection of the data of their
customers, employees and partners. As a thank you for your help, we offer a reward for every report of an unknown vulnerability.

Domains

pathe.com
cannes.patheinternational.com
tiff.patheinternational.com
afm.patheinternational.com
parisrdv.patheinternational.com
efm.patheinternational.com

Structured scope

https://pathe.com/ | Pathé Corporate
https://cannes.patheinternational.com/ | Corner Digital Cannes
https://tiff.patheinternational.com/ | Corner Digital TIFF
https://afm.patheinternational.com/ | Corner Digital AFM
https://parisrdv.patheinternational.com/ | Corner Digital RDV PARIS
https://efm.patheinternational.com/ | Corner Digital EFM

Out of scope

https://www.pathefilms.com/
https://www.patheinternational.com/
https://www.fondation-jeromeseydoux-pathe.com/

Minimum payout

No response

Maximum payout

No response

Currency

No response

Payout - critical

No response

Payout - high

No response

Payout - medium

No response

Payout - low

No response

Testing policy URL

No response

Excluded methods

  • dos
  • social_engineering
  • phishing
  • physical_access
  • automated_scanning

Requires account

None

Safe harbor

None

Allows disclosure

None

Disclosure timeline days

No response

Response SLA days

5

Legal terms URL

No response

Hall of fame URL

No response

Swag details

No response

Reporting URL

https://app.zerocopter.com/en/cvd/76f239d7-adfb-4fff-803c-5fcd9d813952

PGP key URL

No response

Preferred languages

No response

Standards


Confirmation

  • I confirm the information is accurate and I have included only publicly documented program details.

Metadata

Metadata

Assignees

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions