PT-2023-14605 · Dell Emc · Dell Emc Data Protection Central

CVE-2022-45102

·

Publicado

2023-02-01

·

Atualizado

2023-02-08

CVSS v3.1

6.1

Média

VetorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Dell EMC Data Protection Central versions 19.1 through 19.7
Description The issue allows a remote unauthenticated attacker to potentially exploit it by injecting arbitrary Host header values, which could lead to web cache poisoning or trigger redirections.
Recommendations For versions 19.1 through 19.7, update to a version that contains a fix for this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Encoding or Escaping of Output

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2022-45102

Produtos afetados

Dell Emc Data Protection Central