Incorrect Authorization Vulnerability in Adobe Campaign Classic by Adobe
CVE-2026-75728

9.1CRITICAL

Key Information:

Vendor

Adobe

Vendor
CVE Published:
22 September 2026

What is CVE-2026-75728?

Adobe Campaign Classic (ACC) is susceptible to an Incorrect Authorization vulnerability, which may enable attackers to execute arbitrary code within the context of the current user. This vulnerability alerts that exploitation can occur without requiring any user interaction, emphasizing the need for urgent updates and security measures from users of the product. Users are encouraged to review the vendor advisory for further information on mitigating potential risks.

Affected Version(s)

Adobe Campaign Classic 0 <= 7.4.4 build 9401

Adobe Campaign Classic 7.4.4 build 9402

References

CVSS V3.1

Score:
9.1
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.