Dell EMC Data Protection Central, versions 19.1 through 19.7, contains a Host Header Injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary \u2018Host\u2019 header values to poison a web cache or trigger redirections.
2023-02-01T06:15:09.123
2024-11-21T07:28:47.180
Modified
CVSSv3.1: 5.4 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | dell | emc_data_protection_central | < 19.8 | Yes |
Operating System | dell | dp4400_firmware | ≤ 2.7 | Yes |
Hardware | dell | dp4400 | - | No |
Operating System | dell | dp5900_firmware | ≤ 2.7 | Yes |
Hardware | dell | dp5900 | - | No |