


Perceptive Security
SOC/SIEM Consultancy

Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current…
Published:
29 juli 2026 om 22:00:00
Alert date:
30 juli 2026 om 04:00:46
Source:
nvd.nist.gov
Enterprise Applications, Zero-Day Vulnerabilities, Identity & Access
Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability (CVE-2026-48449) that can lead to arbitrary code execution in the context of the current user. The vulnerability requires no user interaction to exploit, making it particularly dangerous. The scope of the vulnerability is noted as changed, indicating it can affect components beyond the vulnerable component itself. Adobe has published a security advisory (APSB26-114) addressing this issue. Given the no-user-interaction requirement and arbitrary code execution potential, this vulnerability carries a high severity rating.
Technical details
Mitigation steps:
Affected products:
Adobe Campaign Classic
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-48449
https://helpx.adobe.com/security/products/campaign/apsb26-114.html
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
