Home / Aug 02, 2026 / Story
0
#3 The Hacker News general August 01, 2026 at 07:12 UTC

Adobe Campaign Classic CVSS 10.0 Flaw Could Run Code Without User Interaction

By [email protected] (The Hacker News)

AI Summary

Adobe patched CVE-2026-48449, a CVSS 10.0 incorrect authorization flaw in Adobe Campaign Classic (ACC) that allows unauthenticated attackers to execute arbitrary code without user interaction. As a maximum-severity RCE in a widely deployed enterprise marketing automation platform, this vulnerability demands immediate patching priority for organizations running ACC. No exploitation details were disclosed, but the CVSS score and attack vector make this a critical exposure.

Relevance score: 90.0/100

# More from August 02