CVE-2018-17102: Quickappscms Quickapps CMS
High severity, CVSS 8.8. EPSS: 0.7% chance of exploitation in the next 30 days.
An issue was discovered in QuickAppsCMS (aka QACMS) through 2.0.0-beta2. A CSRF vulnerability can change the administrator password via the user/me URI.
Affected products
- Quickappscms Quickapps CMS: up to and including 1.1.2; version 2.0.0 only
Published 2018-09-16. Last modified 2026-06-17.