Incorrect Authorization Vulnerability in Adobe Campaign Classic
CVE-2026-48303

10CRITICAL

Key Information:

Vendor

Adobe

Vendor
CVE Published:
9 June 2026

What is CVE-2026-48303?

Adobe Campaign Classic is subject to an Incorrect Authorization vulnerability present in versions 7.4.3 build 9394 and earlier, enabling an attacker to execute arbitrary code in the context of the current user. This vulnerability can be exploited without requiring any user interaction, significantly increasing the risk of unauthorized access and potential data compromise.

Affected Version(s)

Adobe Campaign Classic (ACC) 0 <= 7.4.3 build 9394

References

CVSS V3.1

Score:
10
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.