CVE-2026-47938

Summary

Adobe Campaign Classic (ACC) versions 7.4.3 build 9394 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in privilege escalation. Exploitation of this issue does not require user interaction. Scope is changed.

Affected Software

VendorProductVersion RangeStatus
AdobeAdobe Campaign Classic0 <= ACC v7: 7.4.3 build 9394affected
AdobeAdobe Campaign ClassicACC v7: 7.4.3 build 9396unaffected

Weaknesses

  • CWE-918: Server-Side Request Forgery (SSRF) (CWE-918)

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: total

References