PT-2023-14605 · Dell Emc · Dell Emc Data Protection Central

Published

2023-02-01

·

Updated

2023-02-08

·

CVE-2022-45102

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Dell EMC Data Protection Central versions 19.1 through 19.7
Description The issue allows a remote unauthenticated attacker to potentially exploit it by injecting arbitrary Host header values, which could lead to web cache poisoning or trigger redirections.
Recommendations For versions 19.1 through 19.7, update to a version that contains a fix for this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Encoding or Escaping of Output

Weakness Enumeration

Related Identifiers

CVE-2022-45102

Affected Products

Dell Emc Data Protection Central