CVE-2013-3606: Input Validation
The login page in the GoAhead web server on Dell PowerConnect 3348 1.2.1.3, 3524p 2.0.0.48, and 5324 2.0.1.4 switches allows remote attackers to cause a denial of service (device outage) via a long username.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-3606?
CVE-2013-3606 has a severity rating that indicates it can lead to a denial of service condition.
How do I fix CVE-2013-3606?
To mitigate CVE-2013-3606, ensure you update the affected Dell PowerConnect switches to the latest firmware version.
Which devices are affected by CVE-2013-3606?
CVE-2013-3606 affects the Dell PowerConnect 3348, 3524P, and 5324 switches with specific firmware versions.
What type of attack does CVE-2013-3606 facilitate?
CVE-2013-3606 allows remote attackers to execute a denial of service attack through inputting a long username.
Is there a workaround for CVE-2013-3606?
As a temporary workaround for CVE-2013-3606, limit access to the login page or use network firewalls to filter traffic.