Adobe Campaign Classic (ACC) — CVE-2026-48286 (Critical)

Date Jun 30, 2026
Type Vendor advisory
Signal Critical vendor advisory
Vendor / Product Adobe · Campaign Classic (ACC)
CVE CVE-2026-48286
Critical vendor advisory CVE-2026-48286

Summary

Adobe Campaign Classic (ACC) versions 7.4.3 build 9396 and earlier are affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope is changed.

Why it matters

This CVE carries a CRITICAL severity rating (CVSS 10.0) in Adobe Campaign Classic (ACC). Patch or mitigate promptly.

Operator check

Review CVE-2026-48286 in your asset inventory. Apply patches per vendor guidance and verify Campaign Classic (ACC) is not exposed. CVSS score: 10.0.

Sources

PatchBrief uses public sources. It does not scan environments, verify exposure, or replace vendor guidance.