CVE-2026-48448EPSS p54.9%
CVE-2026-48448CVE-2026-48448
adobe / campaign
Description
Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to gain file system read access. Exploitation of this issue does not require user interaction. Scope is changed.
Scoring
| CVSS | 8.6 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N |
| EPSS | 0.79% probability of exploitation · percentile 54.9% · 2026-10-05T12:00:23Z |
| Last modified | 2026-08-28 |