CVE-2026-48286Patch(adobe / campaign)

LOWCVSS 10.0 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch adobe campaign systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Adobe Campaign Classic (ACC) versions 7.4.3 build 9396 and earlier are affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope is changed.

1.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-863

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • campaign
  • linux_kernel
  • windows

Threat summary

  • Patch or workaround signal is available
  • 9 mentions across 6 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 6 signals
  • Technical details provided in 8 signals
  • Disclosure: 3 classified signals
  • General: 1 classified signal
  • Peaked 4d ago at 3 mentions (2026-07-01); latest day: 1
  • 9 total mentions across 6 days

Affected systems

Products
campaignlinux_kernelwindows

1 version affected across 3 products

Deep dive

Activity timeline9 mentions / 6d
01223Mentions · 2026-06-30: 2Mentions · 2026-07-01: 3Mentions · 2026-07-03: 1Mentions · 2026-07-06: 1Mentions · 2026-07-10: 1Mentions · 2026-07-26: 1Patch / Workaround · 2026-06-30: 1Patch / Workaround · 2026-07-01: 3Patch / Workaround · 2026-07-03: 1Patch / Workaround · 2026-07-06: 1Technical Details · 2026-06-30: 2Technical Details · 2026-07-01: 3Technical Details · 2026-07-03: 1Technical Details · 2026-07-06: 1Technical Details · 2026-07-10: 106-3007-0107-0307-0607-1007-26
Signal classification3 categories
Patch
555.6%
Disclosure
333.3%
General
111.1%
Referenced assets6 URLs
Classification over time
DateTotalLabels
2026-06-302
Disclosure1Patch1
2026-07-013
Patch3
2026-07-031
Disclosure1
2026-07-061
Patch1
2026-07-101
Disclosure1
2026-07-261
General1
Full discourse9 posts
  • The Hacker News@TheHackersNews
    Patch

    🚨 Adobe patched 9 flaws in ColdFusion and Campaign Classic, 7 rated CVSS 10.0. ColdFusion issues enable RCE, privilege escalation, file read, and bypass. Campaign Classic CVE-2026-48286 impacts on-prem ACC v7 only. Read: https://thehackernews.com/2026/07/adobe-patches-7-cvss-100-flaws-in.html

    Post summary

    Adobe released patches for nine high‑severity vulnerabilities in ColdFusion and Campaign Classic, including a CVE affecting on‑prem ACC v7, addressing RCE, privilege escalation, file read, and bypass issues.

    311034616.8K
    2.3M followersView on X
  • Orizon@OrizonCyber
    Patch

    🚨 CVE-2026-48286 — CVSS 10/10 ██████████ Adobe Campaign Classic (ACC) versions 7.4.3 build 9396 and earlier are affected by an Incorrect Authorization... Severity: CRITICAL Patch now. #cybersecurity #CVE https://t.co/zYmH7FYYco

    Post summary

    A critical CVE (CVE‑2026‑48286) affecting Adobe Campaign Classic has been disclosed with a CVSS score of 10/10 and a vendor patch has been released.

    11000124
    63 followersView on X
  • Kaitan ID Security@KaitanSecurity
    Disclosure

    ⚡ Adobe Campaign Classic: Authorization Flaw at CVSS 10.0 CVE-2026-48286 affects Adobe Campaign Classic (ACC) versions 7.4.3 build 9396 and earlier, carrying an Incorrect Authorization vulnerability scored at CVSS 10.0. Successful…

    Post summary

    CVE‑2026‑48286 is an incorrect authorization flaw in Adobe Campaign Classic (versions 7.4.3 build 9396 and earlier), rated CVSS 10.0, with no PoC, exploit, or patch mentioned in this release.

    1000036
    85 followersView on X
  • IntegSec@integ_sec
    General

    CVE-2026-48286: Adobe Campaign Classic Incorrect Authorization Flaw - What It Means for Your Business and How to Respond https://hubs.li/Q04qNry-0

    Post summary

    The title announces a disclosed Adobe Campaign Classic authorization flaw but offers no concrete technical details, PoC, exploit, or patch information within the provided text.

    0000035
    32 followersView on X
  • ProtAAPP - Protege las AAPP@ProtAAPP
    Patch

    Adobe ha lanzado parches para vulnerabilidades críticas en ColdFusion y Campaign Classic, incluyendo CVE-2026-48286 (CVSS 10.0), que permite ejecución de código arbitrario. Investigadores Anirudh Anand, Matan Sandori y 2Bsecure reportaron varias CVE. https://thehackernews.com/2026/07/adobe-patches-7-cvss-100-flaws-in.html https://t.co/K25rem4kJN

    Post summary

    Adobe released patches for critical ColdFusion and Campaign Classic vulnerabilities, including CVE-2026-48286 with a CVSS score of 10.0 that permits arbitrary code execution.

    00000313
    8.3K followersView on X
  • CCB Alert@CCBalert
    Disclosure

    Warning: #CVE-2026-48286 (CVSS 10.0) - incorrect authorization in #Adobe Campaign Classic allows unauthenticated #RCE. More info at: https://helpx.adobe.com/security/products/campaign/apsb26-69.html. #Patch #Patch #Patch

    Post summary

    The post warns about CVE‑2026‑48286, a critical unauthenticated RCE in Adobe Campaign Classic, and directs readers to an Adobe advisory for patching information.

    00000375
    7.2K followersView on X
  • SecAlerts@SecAlertsCo
    Patch

    📧 Adobe Campaign Classic (ACC) v7.4.3 build 9396 and earlier: CVSS 10 critical. No auth needed for arbitrary code execution via broken authorization. Patch now. CVE-2026-48286 #Adobe #CyberSecurity https://secalerts.co/vulnerability/CVE-2026-48286?utm_campaign=x https://t.co/9tnnC6f2NC

    Post summary

    Adobe Campaign Classic v7.4.3 build 9396 and earlier are vulnerable to critical remote code execution with no authentication required; patch is immediately required.

    0000091
    847 followersView on X
  • kawn@kawn2020
    Patch

    #securityupdate #adobeupdate #adobe #CampaignClassic Adobe から,Adobe Campaign Classic で更新をリリース. 適用優先度「1」,緊急度「Critical」 CVSS スコア 10.0 とのこと. ・CVE-2026-48286 https://x.com/kawn2020/status/2072183082380366076

    Post summary

    Adobe announced a critical update for Campaign Classic to address CVE-2026-48286, with priority 1 and CVSS score 10.0.

    0000070
    91 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-48286 Incorrect Authorization Vulnerability in Adobe Campaign Classic 7.4.3 Build 9396 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-48286

    Post summary

    The text announces an incorrect authorization vulnerability in Adobe Campaign Classic 7.4.3 Build 9396 (CVE-2026-48286) without providing proof‑of‑concepts, exploits, or patches.

    00000107
    4.1K followersView on X
CPE platform detail3 entries

3 of 3 entries

PartVendorProductVersionTarget SWTarget HW
Appadobecampaign---
OSlinuxlinux_kernel---
OSmicrosoftwindows---

Explore more