CVE-2026-48399CWE-657

CVE-2026-48399

High · published August 4, 2026

CVSS v3.1
7.5
EPSS
0%
Percentile
38.6
In the wild
Unconfirmed
What it is

Adobe Campaign Classic (ACC) is affected by a Violation of Secure Design Principles vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized read access. Exploitation of this issue does not require user interaction.

The record
Technical detail
CVSS v3.1
7.5 · HIGH
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS v4.0
Not supplied
EPSS
0.00464 · 38.6th percentile
Weakness
CWE-657 · Violation of Secure Design Principles
Published
2026-08-04T03:16Z
Affected products (5)
ProductVersionsFixed in
adobe/campaign≤ 7.4.2
adobe/campaignall versions
adobe/campaignall versions
adobe/campaignall versions
adobe/campaignall versions
References (1)
EPSS history
Timeline
  • 03 AUG 22:37Z
    Adobe Campaign Classic (ACC) | Violation of Secure Design Principles (CWE-657)
    cvelistv5