Dell PowerProtect Data Manager
cpe:2.3:a:dell:powerprotect_data_manager:*:*:*:*:*:*:*
- >= 19.15.0, <= 19.18.0-23
A vulnerability has been identified in the Dell PowerProtect Data Manager Reporting component, specifically in versions 19.17 and 19.18. This vulnerability involves improper encoding or escaping of output, which could allow a high-privileged attacker with local access to inject arbitrary web scripts or HTML into reporting outputs.
Exploitation of this vulnerability could lead to the injection of malicious web scripts or HTML, potentially allowing for cross-site scripting attacks or manipulation of the reporting output.
Users can upgrade to Dell PowerProtect Data Manager version 19.19.0-15 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.