DSA-2019-144: Dell PowerProtect Data Manager Security Update for Apache Tomcat

Summary: DSA-2019-144: Dell PowerProtect Data Manager Security Update for Apache Tomcat

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Impact

High

Details

Summary: 
The Apache Tomcat component in Dell PowerProtect Data Manager has been updated to address a security vulnerability.

The component is updated for the following vulnerability:     

  • CVE-2019-10072
    7.5 High (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)

For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm.  

To search for a particular CVE, use the database s search utility at http://web.nvd.nist.gov/view/vuln/search.

The component is updated for the following vulnerability:     

  • CVE-2019-10072
    7.5 High (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)

For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm.  

To search for a particular CVE, use the database s search utility at http://web.nvd.nist.gov/view/vuln/search.

Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products & Remediation

Affected products: 
Dell PowerProtect Data Manager (PPDM) versions prior to 19.2.

Remediation:     
The following Dell PowerProtect Data Management release contains a resolution to this vulnerability:

  • Dell PowerProtect Data Manager version 19.2 or later

Dell recommends all customers upgrade at the earliest opportunity. Contact Dell PowerProtect Data Manager customer support to download the required binary files and install it.

Affected products: 
Dell PowerProtect Data Manager (PPDM) versions prior to 19.2.

Remediation:     
The following Dell PowerProtect Data Management release contains a resolution to this vulnerability:

  • Dell PowerProtect Data Manager version 19.2 or later

Dell recommends all customers upgrade at the earliest opportunity. Contact Dell PowerProtect Data Manager customer support to download the required binary files and install it.

Related Information

Affected Products

PowerProtect Data Manager

Products

PowerProtect Data Manager, Product Security Information
Article Properties
Article Number: 000153608
Article Type: Dell Security Advisory
Last Modified: 28 Aug 2025
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.