← Back to overview

Adobe Campaign Classic (ACC) is affected by a critical OS Command Injection vulnerability (CVE-2026-76195) classified under CWE as Improper Neutralization of Special Elements used in an OS Command. The vulnerability allows an attacker to execute arbitrary code in the context of the current user. No user interaction is required for exploitation, making it particularly dangerous. The scope of the vulnerability is changed, indicating impact can extend beyond the vulnerable component. Adobe has published a security advisory (APSB26-134) addressing this issue. The vulnerability is tracked on NVD with a High criticality rating. Organizations using Adobe Campaign Classic should apply patches immediately.

Affected products

  • Adobe Campaign Classic (ACC)

Related CVE's

  • CVE-2026-76195

Categories

  • Enterprise Applications
  • Zero-Day Vulnerabilities