Blind SQL Injection Vulnerability in Quick.CMS by OpenSolution
CVE-2026-33385
5.1MEDIUM
What is CVE-2026-33385?
A Blind SQL injection vulnerability has been identified in Quick.CMS, allowing high-privileged users to exploit improperly neutralized input fields in the administration panel. This flaw could result in bypassing front-end validation controls, enabling unauthorized access to the database and potential data destruction. Despite the severity of this issue, the vendor has indicated that no remediation is necessary, considering the application's trust model.
Affected Version(s)
Quick.CMS 6.8
