DSA-2022-348: Dell Data Protection Central Security Update for Proprietary Code Vulnerability
摘要: Dell Data Protection Central remediation is available for Host Header Injection vulnerability that may be exploited by malicious users to compromise the affected system.
本文适用于
本文不适用于
本文并非针对某种特定的产品。
本文并非包含所有产品版本。
影响
Medium
详情
| Proprietary Code CVE | Description | CVSS Base Score | CVSS Vector String |
| CVE-2022-45102 | Dell Data Protection Central versions 19.1 through 19.7 contain a Host Header Injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary 'Host' header values to poison a web cache or trigger redirections. | 5.4 | CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N |
| Proprietary Code CVE | Description | CVSS Base Score | CVSS Vector String |
| CVE-2022-45102 | Dell Data Protection Central versions 19.1 through 19.7 contain a Host Header Injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary 'Host' header values to poison a web cache or trigger redirections. | 5.4 | CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N |
受影响的产品和补救措施
| Product | Affected Versions | Updated Versions | Link to Update |
| Dell Data Protection Central | 19.1 | 19.8 | To upgrade your Dell Data Protection Central system, see Dell KB article 34881: Data Protection Central: How to Install the Data Protection Central operating system Update for installation instructions. See the latest 'Data Protection Central OS Update' file in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/drivers. See the latest 'Data Protection Central OS Updates Release Notes' in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/docs. |
| 19.2 | 19.8 | ||
| 19.3 | 19.8 | ||
| 19.4 | 19.8 | ||
| 19.5 | 19.8 | ||
| 19.6 | 19.8 | ||
| 19.7 | 19.8 | ||
| PowerProtect DP Series Appliance (Integration Data Protection Appliance) | 2.5 | 2.7.x | To upgrade your PowerProtect DP Series Appliance Dell Data Protection Central component, see Dell KB article 34881: Data Protection Central: How to Install the Data Protection Central operating system Update for installation instructions. See the latest 'Data Protection Central OS Update' file in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/drivers. See the latest 'Data Protection Central OS Updates Release Notes' in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/docs. |
| 2.6.x | 2.7.x | ||
| 2.7.x | 2.7.x | ||
NOTE: For PowerProtect DP Series Appliance (Integration Data Protection Appliance), the appliance should first be upgraded to any 2.7.x version (version 2.7.2 is preferred) and then the previously mentioned Data Protection Central patch should be applied.
| Product | Affected Versions | Updated Versions | Link to Update |
| Dell Data Protection Central | 19.1 | 19.8 | To upgrade your Dell Data Protection Central system, see Dell KB article 34881: Data Protection Central: How to Install the Data Protection Central operating system Update for installation instructions. See the latest 'Data Protection Central OS Update' file in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/drivers. See the latest 'Data Protection Central OS Updates Release Notes' in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/docs. |
| 19.2 | 19.8 | ||
| 19.3 | 19.8 | ||
| 19.4 | 19.8 | ||
| 19.5 | 19.8 | ||
| 19.6 | 19.8 | ||
| 19.7 | 19.8 | ||
| PowerProtect DP Series Appliance (Integration Data Protection Appliance) | 2.5 | 2.7.x | To upgrade your PowerProtect DP Series Appliance Dell Data Protection Central component, see Dell KB article 34881: Data Protection Central: How to Install the Data Protection Central operating system Update for installation instructions. See the latest 'Data Protection Central OS Update' file in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/drivers. See the latest 'Data Protection Central OS Updates Release Notes' in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/docs. |
| 2.6.x | 2.7.x | ||
| 2.7.x | 2.7.x | ||
NOTE: For PowerProtect DP Series Appliance (Integration Data Protection Appliance), the appliance should first be upgraded to any 2.7.x version (version 2.7.2 is preferred) and then the previously mentioned Data Protection Central patch should be applied.
修订历史记录
| Revision | Date | Description |
| 1.0 | 2022-12-15 | Initial Release |
相关信息
法律免责声明
受影响的产品
PowerProtect Data Protection Appliance, Data Protection Central, PowerProtect Data Protection Software产品
Product Security Information文章属性
文章编号: 000206329
文章类型: Dell Security Advisory
上次修改时间: 19 9月 2025
从其他戴尔用户那里查找问题的答案
支持服务
检查您的设备是否在支持服务涵盖的范围内。