Server-side request forgery (SSRF) in Campaign Classic could lead to sensitive information disclosure
CVE-2021-21009
8.6HIGH
What is CVE-2021-21009?
Adobe Campaign Classic Gold Standard 10 (and earlier), 20.3.1 (and earlier), 20.2.3 (and earlier), 20.1.3 (and earlier), 19.2.3 (and earlier) and 19.1.7 (and earlier) are affected by a server-side request forgery (SSRF) vulnerability. Successful exploitation could allow an attacker to use the Campaign instance to issue unauthorized requests to internal or external resources.
Affected Version(s)
Campaign <= 20.3.1 and earlier
Campaign <= unspecified
Campaign <= 20.2.3 and earlier