CVE-2018-19371: Sdl Web Content Manager
Medium severity, CVSS 6.5. EPSS: 6% chance of exploitation in the next 30 days.
The SaveUserSettings service in Content Manager in SDL Web 8.5.0 has an XXE Vulnerability that allows reading sensitive files from the system.
Affected products
- Sdl Web Content Manager: version 8.5.0 only
Published 2019-01-02. Last modified 2026-06-17.