VDB

GCVE-110-NCSC-2026-291

GCVE-110-NCSC-2026-291
Advisory PublishedCVSS 9.0/10
Vulnetix · Advisory published August 12, 2026
Adobe Campaign Classic (ACC) contains an Incorrect Authorization vulnerability that enables attackers to execute arbitrary code without user interaction, altering the scope of execution.

Weaknesses (CWE)

CWE-502Deserialization of Untrusted DataCWE-89Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')CWE-863Incorrect Authorization

Risk Scores

CVSS 3.1
9.0/10
Critical · CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H

Affected Products

VendorProductVersionsPlatforms
Adobevers:unknown/*

References

advisory
advisory
advisory
advisory
advisory

Browse GCVE Records

3,521 records in the GCVE database · Updated September 6, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›