logo

CVE-2026-48449: Adobe Campaign Classic RCE

ID: cfa5678a-e333-5fcd-8093-11de5803dd9b

STIX ID: report--cfa5678a-e333-5fcd-8093-11de5803dd9b

Feed Name: SOCRadar Blog

Threat Score
78/100

Date Published: 2026-08-03

Date Updated: 2026-08-10

Author: ameer

...
...

Adobe Campaign Classic v7 is affected by CVE-2026-48449 (CVSS 10.0), an incorrect-authorization vulnerability that can lead to remote code execution in on-premises or customer-managed deployments; affected systems running 7.4.3 build 9397 or earlier should be upgraded to 7.4.3 build 9398 immediately. The advisory also references a related SQL injection issue (CVE-2026-48448) and recommends inventorying deployments, restricting network access while patching, and performing behavioral hunting, although Adobe reported no confirmed in-the-wild exploitation at the time of publication.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.