#3
The Hacker News
general
August 01, 2026 at 07:12 UTC
Adobe Campaign Classic CVSS 10.0 Flaw Could Run Code Without User Interaction
By [email protected] (The Hacker News)
AI Summary
Adobe patched CVE-2026-48449, a CVSS 10.0 incorrect authorization flaw in Adobe Campaign Classic (ACC) that allows unauthenticated attackers to execute arbitrary code without user interaction. As a maximum-severity RCE in a widely deployed enterprise marketing automation platform, this vulnerability demands immediate patching priority for organizations running ACC. No exploitation details were disclosed, but the CVSS score and attack vector make this a critical exposure.
Relevance score: 90.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →