First published: Mon Jan 10 2022(Updated: )
Dell EMC Data Protection Central versions 19.5 and prior contain a Server Side Request Forgery vulnerability in the DPC DNS client processing. A remote malicious user could potentially exploit this vulnerability, allowing port scanning of external hosts.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC Data Protection Central | <19.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-36349 is medium.
CVE-2021-36349 affects Dell EMC Data Protection Central versions 19.5 and prior.
Dell EMC Data Protection Central versions 19.5 and prior contain a Server Side Request Forgery vulnerability in the DPC DNS client processing.
A remote malicious user could potentially exploit CVE-2021-36349 to perform port scanning of external hosts.
More information about CVE-2021-36349 can be found at the following reference: https://www.dell.com/support/kbdoc/000195103