CVE-2017-17626: Readymade PHP Classified Script Project Readymade PHP Classified Script

Critical severity, CVSS 9.8. EPSS: 3.1% chance of exploitation in the next 30 days.

Readymade PHP Classified Script 3.3 has SQL Injection via the /categories subctid or mctid parameter.

Affected products

Published 2017-12-13. Last modified 2026-06-17.