VDB

CVE-2026-48381

CVE-2026-48381 PUBLISHED CVSS 9 CRITICAL

Adobe has released a security update for Adobe Campaign Classic. This update addresses critical vulnerabilities  that could result in arbitrary code execution. Adobe is not aware of any exploits in the wild for any of the issues addressed in this update. Vulnerability: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') (CWE-89) Impact: Arbitrary code execution Severity: Critical CVSS: 9.0 CWE: CWE-89

EPSS 0.58% · 45.4th percentile

Risk Scores

CVSS 3.1
9
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS Score
0.58%
45.4th percentile

Affected Products

VendorProductVersions
AdobeAdobe Campaign Classic7.4.3, 7.4.3, 7.4.3

Timeline

  • Aug 11, 2026 CVE Published
  • Aug 12, 2026 Coalition ESS Score
  • Aug 24, 2026 EPSS Score
  • Aug 26, 2026 EPSS Score
  • Aug 27, 2026 CVE Updated
  • Aug 28, 2026 EPSS Score
  • Aug 30, 2026 EPSS Score
  • Sep 3, 2026 EPSS Score
  • Sep 5, 2026 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›