Server-Side Request Forgery Vulnerability in Adobe Campaign Classic
CVE-2026-82013

9.9CRITICAL

Key Information:

Vendor

Adobe

Vendor
CVE Published:
22 September 2026

What is CVE-2026-82013?

Adobe Campaign Classic (ACC) is susceptible to a Server-Side Request Forgery (SSRF) vulnerability that allows low-privileged attackers to manipulate requests sent from the server, potentially leading to privilege escalation and unauthorized access to internal resources. This exploitation can occur without any user interaction, increasing the risk for organizations using the affected software.

Affected Version(s)

Adobe Campaign Classic 0 <= 7.4.4 build 9401

Adobe Campaign Classic 7.4.4 build 9402

References

CVSS V3.1

Score:
9.9
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.