Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
10.0
CVE-2026-71398: Adobe Campaign Classic Allows Malicious Code Execution
CVE-2026-71398
CVE-2026-71398
Summary
Adobe Campaign Classic's authorization system is flawed, allowing attackers to execute malicious code as the current user. This could lead to sensitive data being compromised or manipulated. Update Adobe Campaign Classic to the latest version to fix this issue.
What to do
No fix is available yet. Check with your software vendor for updates.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| adobe | adobe campaign classic | <= ACC v7: 7.4.3 build 9399 |
Original title
Adobe Campaign Classic (ACC) | Incorrect Authorization (CWE-863)
Original description
Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue does not require user interaction. Scope is changed.
nvd CVSS3.1
10.0
Vulnerability type
CWE-863
Incorrect Authorization
Published: 11 Aug 2026 · Updated: 11 Aug 2026 · First seen: 11 Aug 2026