Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4345 articles · 196293 vulns · 36/41 feeds (7d)
← Back to list
10.0
CVE-2026-48449PATCHED
adobe · campaign

Adobe Campaign Classic (ACC) | Incorrect Authorization (CWE-863)

Description

Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope is changed.

Affected Products

VendorProductVersions
adobecampaign0

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
linuxlinux_kernelcve_cpe95%
microsoftwindowscve_cpe95%

References

  • https://helpx.adobe.com/security/products/campaign/apsb26-114.html(vendor-advisory)

Related News (3 articles)

Tier D
Heise Security20d ago
Kritische Schadcode-Sicherheitslücke bedroht Adobe Campaign Classic
→ No new info (linked only)
Tier D
The Hacker News22d ago
Adobe Campaign Classic CVSS 10.0 Flaw Could Run Code Without User Interaction
→ No new info (linked only)
Tier C
VulDB24d ago
CVE-2026-48449 | Adobe Campaign Classic improper authorization
→ No new info (linked only)
CVSS 3.110.0 CRITICAL
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CISA KEV❌ No
Actively exploited❌ No
Patch available
7.4.3 build 9398
CWECWE-863
PublishedJul 30, 2026
Trending Score7
Source articles3
Independent3
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-71362
Adobe Commerce | Incorrect Authorization (CWE-863)
Trending: 23
CRITICALCVE-2026-48362
ColdFusion | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78)
Trending: 20
HIGHCVE-2026-48414
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Trending: 16
HIGHCVE-2026-48416
Adobe Commerce | Incorrect Authorization (CWE-863)
Trending: 16
HIGHCVE-2026-48413
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)
Trending: 15

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Jul 30, 2026
Discovered by ZDM
Jul 30, 2026
Patch Available
Aug 3, 2026