Adobe Campaign Classic是美国奥多比(Adobe)公司的一个企业级营销自动化与活动管理平台。 Adobe Campaign Classic 7.4.3 build 9394版本及之前版本存在代码问题漏洞,该漏洞源于服务端请求伪造,可能导致权限提升。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Adobe | Adobe Campaign Classic | ≤ ACC v7: 7.4.3 build 9394 |
affected |
ACC v7: 7.4.3 build 9396 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Adobe | Adobe Campaign Classic | 0 ~ ACC v7: 7.4.3 build 9394 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-48303 | 10.0 CRITICAL | Adobe Campaign Classic (ACC) | Incorrect Authorization (CWE-863) |
| CVE-2026-47928 | 9.6 CRITICAL | ColdFusion | Improper Input Validation (CWE-20) |
| CVE-2026-34691 | 9.3 CRITICAL | Adobe Experience Manager Forms JEE | Cross-site Scripting (Stored XSS) (CWE-79) |
| CVE-2026-47932 | 8.8 HIGH | ColdFusion | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal' |
| CVE-2026-47906 | 8.6 HIGH | Dreamweaver Desktop | Dependency on Vulnerable Third-Party Component (CWE-1395) |
| CVE-2026-47907 | 8.6 HIGH | Dreamweaver Desktop | Improper Access Control (CWE-284) |
| CVE-2026-47929 | 8.4 HIGH | ColdFusion | Incorrect Authorization (CWE-863) |
| CVE-2026-47931 | 8.4 HIGH | ColdFusion | Improper Input Validation (CWE-20) |
| CVE-2026-47930 | 8.1 HIGH | ColdFusion | Improper Input Validation (CWE-20) |
| CVE-2026-34693 | 8.0 HIGH | Adobe Experience Manager Forms JEE | Cross-site Scripting (Reflected XSS) (CWE-79) |
| CVE-2026-47919 | 7.8 HIGH | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-34710 | 7.8 HIGH | Substance3D - Sampler | Out-of-bounds Write (CWE-787) |
| CVE-2026-34708 | 7.8 HIGH | InCopy | Stack-based Buffer Overflow (CWE-121) |
| CVE-2026-47921 | 7.8 HIGH | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-47920 | 7.8 HIGH | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-34706 | 7.8 HIGH | InCopy | Out-of-bounds Write (CWE-787) |
| CVE-2026-47913 | 7.8 HIGH | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-47914 | 7.8 HIGH | Acrobat Reader | Use After Free (CWE-416) |
| CVE-2026-47908 | 7.8 HIGH | Dreamweaver Desktop | Access of Uninitialized Pointer (CWE-824) |
| CVE-2026-48305 | 7.8 HIGH | Substance3D - Sampler | Out-of-bounds Write (CWE-787) |
Showing top 20 of 123 CVEs. View all on vendor page → →
No comments yet