Back to Database
Status published
Medium
CVE-2013-7239
memcached before 1.4.17 allows remote attackers to bypass authentication by...
Vulnerability Description
memcached before 1.4.17 allows remote attackers to bypass authentication by sending an invalid request with SASL credentials, then sending another request with incorrect SASL credentials.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2013-7239
Credits & Attribution
No credits recorded in the NVD database.
References
More from memcached
View All →CVE-2022-48571
memcached 1.6.7 allows a Denial of Service via multi-packet uploads...
High
7.5
CVE-2021-37519
Buffer Overflow vulnerability in authfile.c memcached 1.6.9 allows attackers to...
Unknown
0
CVE-2020-22570
Memcached 1.6.0 before 1.6.3 allows remote attackers to cause a...
High
7.5
CVE-2020-10931
Memcached 1.6.x before 1.6.2 allows remote attackers to cause a...
High
7.5
CVE-2019-15026
memcached 1.5.16, when UNIX sockets are used, has a stack-based...
High
7.5
Affected Vendor
memcached
View all reports →Affected Software
memcached
Vulnerable Versions:
0, 1.4.0, 1.4.1, 1.4.2, 1.4.3, 1.4.4, 1.4.5, 1.4.6, 1.4.7, 1.4.8, 1.4.9, 1.4.10, 1.4.11, 1.4.12, 1.4.13, 1.4.14, 1.4.15
Timeline
Official Publish:
January 13th, 2014
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.