Vulnerabilities > SDL

DATE CVE VULNERABILITY TITLE RISK
2019-01-02 CVE-2018-19371 XXE vulnerability in SDL web Content Manager 8.5.0
The SaveUserSettings service in Content Manager in SDL Web 8.5.0 has an XXE Vulnerability that allows reading sensitive files from the system.
network
low complexity
sdl CWE-611
4.0
2008-02-01 CVE-2008-0544 Buffer Errors vulnerability in SDL Image 1.2.6
Heap-based buffer overflow in the IMG_LoadLBM_RW function in IMG_lbm.c in SDL_image before 1.2.7 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted IFF ILBM file.
network
low complexity
sdl CWE-119
critical
10.0
2008-02-01 CVE-2007-6697 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in SDL Image
Buffer overflow in the LWZReadByte function in IMG_gif.c in SDL_image before 1.2.7 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted GIF file, a similar issue to CVE-2006-4484.
network
low complexity
sdl CWE-119
7.5