SQL Injection Vulnerability in Adobe Campaign Classic
CVE-2026-82010

9.9CRITICAL

Key Information:

Vendor

Adobe

Vendor
CVE Published:
22 September 2026

What is CVE-2026-82010?

Adobe Campaign Classic is susceptible to an SQL injection vulnerability that allows low-privileged attackers to execute arbitrary code within the context of the current user. This exploitation does not necessitate user interaction, increasing its risk. The vulnerability allows attackers to manipulate SQL queries, potentially leading to unauthorized actions within the application.

Affected Version(s)

Adobe Campaign Classic 0 <= 7.4.4 build 9401

Adobe Campaign Classic 7.4.4 build 9402

References

CVSS V3.1

Score:
9.9
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.