sdl records
3 published records for vendor sdl.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 66.7%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-611 Improper Restriction of XML External Entity Reference1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
42Plan | CVE-2008-0544No exploit | Heap-based buffer overflow in the IMG_LoadLBM_RW function in IMG_lbm.c in SDL_image before 1.2.7 allows remote attackers to cause a denial osdl · sdl image · CWE-119 | Critical10.0 | — | 7.9% | Feb 1, 2008 |
33Monitor | CVE-2007-6697Proof of concept | Buffer overflow in the LWZReadByte function in IMG_gif.c in SDL_image before 1.2.7 allows remote attackers to cause a denial of service (appsdl · sdl image · CWE-119 | High7.5 | — | 10.7% | Feb 1, 2008 |
28Monitor | CVE-2018-19371Proof of concept | The SaveUserSettings service in Content Manager in SDL Web 8.5.0 has an XXE Vulnerability that allows reading sensitive files from the systesdl · web content manager · CWE-611 | Medium6.5 | — | 6.0% | Jan 2, 2019 |
- CVE-2008-054442Plan
Heap-based buffer overflow in the IMG_LoadLBM_RW function in IMG_lbm.c in SDL_image before 1.2.7 allows remote attackers to cause a denial o
CriticalCVSS 10.0No exploitEPSS 8%sdl · sdl imageFeb 1, 2008
- CVE-2007-669733Monitor
Buffer overflow in the LWZReadByte function in IMG_gif.c in SDL_image before 1.2.7 allows remote attackers to cause a denial of service (app
HighCVSS 7.5Proof of conceptEPSS 11%sdl · sdl imageFeb 1, 2008
- CVE-2018-1937128Monitor
The SaveUserSettings service in Content Manager in SDL Web 8.5.0 has an XXE Vulnerability that allows reading sensitive files from the syste
MediumCVSS 6.5Proof of conceptEPSS 6%sdl · web content managerJan 2, 2019