Skip to main content

PowerProtect DP appliance - IDPA resolution to upgrade DPC 19.7.0-9 for IDPA version 2.7.2

Summary: This KB covers resolution for DSA-2022-192, DSA-2022-212, and DSA-2022-251 for an IDPA/PowerProtect DP Series Appliance.

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Symptoms

Dell Data Protection Central versions 19.1, 19.2, 19.3, 19.4, 19.5, and 19.6 contain a Cross-Site Request Forgery Vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability, leading to processing of unintended server operations.

Cause

Resolution

To resolve this issue an upgrade to DPC 19.7.0-9 or above is required. 
For IDPA system, upgrade to IDPA 2.7.6 or above.
 

CAUTION: DPC 19.7 does not support FIPS mode, so if your IDPA is in FIPS mode do not apply this upgrade.

 

 

Additional Information

If you run into DD SSO issues after upgrading, please open an SR with Dell Support to resolve that issue.

If you do not know the DPC lockbox password, the Lockbox can be removed and rebuilt. This looses all username and passwords in DPC, so they will all have to be reentered.
The procedure to do this is in the DPC Administration Guide, in the Troubleshooting chapter under "Remove the lockbox" and then "create the lockbox" sections. 

Article Properties
Article Number: 000202762
Article Type: Solution
Last Modified: 31 Mar 2025
Version:  15
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.