SQL Injection Vulnerability in Adobe Campaign Classic
CVE-2026-48326

9.9CRITICAL

Key Information:

Vendor

Adobe

Vendor
CVE Published:
3 August 2026

What is CVE-2026-48326?

Adobe Campaign Classic (ACC) is impacted by an SQL Injection vulnerability that allows a low-privileged attacker to execute arbitrary code without requiring user interaction. This can lead to severe security implications, as it allows the attacker to operate within the context of the current user, posing significant risks to the integrity and confidentiality of data processed by the application.

Affected Version(s)

Adobe Campaign Classic 0

Adobe Campaign Classic 0

Adobe Campaign Classic ACC v7: 7.4.3 build 9399

References

CVSS V3.1

Score:
9.9
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.