Vulnerability Database

316,882

Total vulnerabilities in the database

CVE-2018-19371

The SaveUserSettings service in Content Manager in SDL Web 8.5.0 has an XXE Vulnerability that allows reading sensitive files from the system.

  • Published: Jan 2, 2019
  • Updated: Nov 9, 2025
  • CVE: CVE-2018-19371
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 4
  • AV:N/AC:L/Au:S/C:P/I:N/A:N