DSA-2022-348: Dell Data Protection Central Security Update for Proprietary Code Vulnerability

概要: Dell Data Protection Central remediation is available for Host Header Injection vulnerability that may be exploited by malicious users to compromise the affected system.

この記事は次に適用されます: この記事は次には適用されません: この記事は、特定の製品に関連付けられていません。 すべての製品パージョンがこの記事に記載されているわけではありません。

影響

Medium

詳細

Proprietary Code CVE Description CVSS Base Score CVSS Vector String
CVE-2022-45102 Dell Data Protection Central versions 19.1 through 19.7 contain a Host Header Injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary 'Host' header values to poison a web cache or trigger redirections.  5.4 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Proprietary Code CVE Description CVSS Base Score CVSS Vector String
CVE-2022-45102 Dell Data Protection Central versions 19.1 through 19.7 contain a Host Header Injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary 'Host' header values to poison a web cache or trigger redirections.  5.4 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
デル・テクノロジーズでは、すべてのお客様に対して、CVSSベース スコアに加えて、特定のセキュリティの脆弱性に付随する潜在的な重要度に影響する可能性のある現状スコアや環境スコアも考慮することをお勧めしています。

影響を受ける製品と修復

Product Affected Versions Updated Versions Link to Update
Dell Data Protection Central 19.1 19.8 To upgrade your Dell Data Protection Central system, see Dell KB article 34881: Data Protection Central: How to Install the Data Protection Central operating system Update for installation instructions.

See the latest 'Data Protection Central OS Update' file in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/drivers.

See the latest 'Data Protection Central OS Updates Release Notes' in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/docs.
19.2 19.8
19.3 19.8
19.4 19.8
19.5 19.8
19.6 19.8
19.7 19.8
PowerProtect DP Series Appliance (Integration Data Protection Appliance) 2.5 2.7.x To upgrade your PowerProtect DP Series Appliance Dell Data Protection Central component, see Dell KB article 34881: Data Protection Central: How to Install the Data Protection Central operating system Update for installation instructions.

See the latest 'Data Protection Central OS Update' file in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/drivers.

See the latest 'Data Protection Central OS Updates Release Notes' in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/docs.
2.6.x 2.7.x
2.7.x 2.7.x
 
 
NOTE: For PowerProtect DP Series Appliance (Integration Data Protection Appliance), the appliance should first be upgraded to any 2.7.x version (version 2.7.2 is preferred) and then the previously mentioned Data Protection Central patch should be applied.
Product Affected Versions Updated Versions Link to Update
Dell Data Protection Central 19.1 19.8 To upgrade your Dell Data Protection Central system, see Dell KB article 34881: Data Protection Central: How to Install the Data Protection Central operating system Update for installation instructions.

See the latest 'Data Protection Central OS Update' file in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/drivers.

See the latest 'Data Protection Central OS Updates Release Notes' in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/docs.
19.2 19.8
19.3 19.8
19.4 19.8
19.5 19.8
19.6 19.8
19.7 19.8
PowerProtect DP Series Appliance (Integration Data Protection Appliance) 2.5 2.7.x To upgrade your PowerProtect DP Series Appliance Dell Data Protection Central component, see Dell KB article 34881: Data Protection Central: How to Install the Data Protection Central operating system Update for installation instructions.

See the latest 'Data Protection Central OS Update' file in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/drivers.

See the latest 'Data Protection Central OS Updates Release Notes' in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/docs.
2.6.x 2.7.x
2.7.x 2.7.x
 
 
NOTE: For PowerProtect DP Series Appliance (Integration Data Protection Appliance), the appliance should first be upgraded to any 2.7.x version (version 2.7.2 is preferred) and then the previously mentioned Data Protection Central patch should be applied.

変更履歴

RevisionDateDescription
1.02022-12-15Initial Release

関連情報

対象製品

PowerProtect Data Protection Appliance, Data Protection Central, PowerProtect Data Protection Software

製品

Product Security Information
文書のプロパティ
文書番号: 000206329
文書の種類: Dell Security Advisory
最終更新: 19 9月 2025
質問に対する他のDellユーザーからの回答を見つける
サポート サービス
お使いのデバイスがサポート サービスの対象かどうかを確認してください。