CVE-2026-48331

EUVD-2026-52516
Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in privilege escalation. Exploitation of this issue does not require user interaction. Scope is changed.
SSRF
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
10 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 40.41%
Affected Products (NVD)
VendorProductVersion
adobecampaign
𝑥
≤ 7.4.2
adobecampaign
7.4.3:9394
adobecampaign
7.4.3:9396
adobecampaign
7.4.3:9397
adobecampaign
7.4.3:9398
𝑥
= Vulnerable software versions