CVE-2026-48399
Received
Received - Intake
Violation of Secure Design Principles in Adobe Campaign Classic
Vulnerability report for CVE-2026-48399, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.
Publication date: 2026-08-03
Last updated on: 2026-08-03
Assigner: Adobe Systems Incorporated
Description
Description
Adobe Campaign Classic (ACC) is affected by a Violation of Secure Design Principles vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized read access. Exploitation of this issue does not require user interaction.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| adobe | campaign_classic | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-657 | The product violates well-established principles for secure design. |