{"id":"CVE-2026-82008","published":"2026-09-22T18:17:21.077","lastModified":"2026-09-23T20:40:43.720","description":"Adobe Campaign Classic (ACC) is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. A low-privileged attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue does not require user interaction. Scope is changed.","cvssScore":9.9,"cvssSeverity":"CRITICAL","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H","cwes":["CWE-20"],"vendors":["adobe","linux","microsoft"],"products":["campaign","linux kernel","windows"],"references":[{"url":"https://helpx.adobe.com/security/products/campaign/apsb26-142.html","tags":["Vendor Advisory"]}],"exploitRefs":[],"hasPoc":false,"ai":{"summary":"The flaw is an Improper Input Validation vulnerability in Adobe Campaign Classic that allows a low-privileged attacker to execute arbitrary code, posing a critical risk.","exploitability":"Exploitation is straightforward with no user interaction required, making it highly exploitable given the right conditions.","blast_radius":"If exploited, this vulnerability could lead to full system compromise, allowing attackers to run arbitrary code with the privileges of the current user.","remediation":"Upgrade to Adobe Campaign Classic version 9.1.1 or later.","detection":"No reliable host or network indicator is derivable from the published description.","tags":["rce","code-execution","web","application"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-09-27T08:47:06.682Z"}}