CVE-2022-45102: Dell DP4400 Firmware

Medium severity, CVSS 6.1. EPSS: 0.5% chance of exploitation in the next 30 days.

Dell EMC Data Protection Central, versions 19.1 through 19.7, contains a Host Header Injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary \u2018Host\u2019 header values to poison a web cache or trigger redirections.

Affected products

  • Dell DP4400 Firmware: from 2.5, up to and including 2.7
  • Dell DP5900 Firmware: from 2.5, up to and including 2.7
  • Dell Emc Data Protection Central: from 19.1, before 19.8 (fixed in 19.8)

Published 2023-02-01. Last modified 2026-06-17.