CVE-2018-5972: Quickad Project Quickad

Critical severity, CVSS 9.8. EPSS: 19.2% chance of exploitation in the next 30 days.

SQL Injection exists in Classified Ads CMS Quickad 4.0 via the keywords, placeid, cat, or subcat parameter to the listing URI.

Affected products

Published 2018-01-24. Last modified 2026-06-17.