CVE-2026-48449: Adobe Campaign Classic RCE
ID: cfa5678a-e333-5fcd-8093-11de5803dd9b
STIX ID: report--cfa5678a-e333-5fcd-8093-11de5803dd9b
Feed Name: SOCRadar Blog
Adobe Campaign Classic v7 is affected by CVE-2026-48449 (CVSS 10.0), an incorrect-authorization vulnerability that can lead to remote code execution in on-premises or customer-managed deployments; affected systems running 7.4.3 build 9397 or earlier should be upgraded to 7.4.3 build 9398 immediately. The advisory also references a related SQL injection issue (CVE-2026-48448) and recommends inventorying deployments, restricting network access while patching, and performing behavioral hunting, although Adobe reported no confirmed in-the-wild exploitation at the time of publication.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
