Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
10.0

CVE-2026-71398: Adobe Campaign Classic Allows Malicious Code Execution

CVE-2026-71398 CVE-2026-71398
Summary

Adobe Campaign Classic's authorization system is flawed, allowing attackers to execute malicious code as the current user. This could lead to sensitive data being compromised or manipulated. Update Adobe Campaign Classic to the latest version to fix this issue.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versions
adobe adobe campaign classic <= ACC v7: 7.4.3 build 9399
Original title
Adobe Campaign Classic (ACC) | Incorrect Authorization (CWE-863)
Original description
Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue does not require user interaction. Scope is changed.
nvd CVSS3.1 10.0
Vulnerability type
CWE-863 Incorrect Authorization
Published: 11 Aug 2026 · Updated: 11 Aug 2026 · First seen: 11 Aug 2026