CVE-2026-76197

EUVD-2026-65618
Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue does not require user interaction. Scope is changed.
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
10 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 88.86%
Affected Products (NVD)
VendorProductVersion
adobecampaign
𝑥
≤ 7.3.2
adobecampaign
7.4.1:9383
adobecampaign
7.4.2:9390
adobecampaign
7.4.2:9391
adobecampaign
7.4.3:9394
adobecampaign
7.4.3:9396
adobecampaign
7.4.3:9397
adobecampaign
7.4.3:9398
adobecampaign
7.4.3:9399
adobecampaign
7.4.4:9400
𝑥
= Vulnerable software versions