CVE-2026-54646 | CubeCart up to 6.7.4 Maintenance maintenance.index.inc.php tablename sql injection
A vulnerability classified as problematic was found in CubeCart up to 6.7.4. This affects an unknown part of the file admin/sources/maintenance.index.inc.php of the component Maintenance. Such manipulation of the argument tablename leads to sql injection.
This vulnerability is listed as CVE-2026-54646. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.VulDB Recent EntriesRead More