Impact
Adobe Campaign Classic is affected by an Improper Control of Generation of Code vulnerability that permits the execution of arbitrary code within the context of the current user. The flaw is a classic code injection issue, identified as CWE‑94, and is exploitable without any user interaction.
Affected Systems
Adobe Campaign Classic (ACC) is the affected product. No specific version information was disclosed in the data provided.
Risk and Exploitability
The CVSS score of 10 reflects a maximum severity rating, and the scope is noted as changed, indicating that compromise of a single user could affect higher‑level privileges. The EPSS score is not available, but the absence of a KEV listing does not diminish the criticality of the flaw. An attacker can leverage this injection without needing the victim’s input, making the vulnerability highly attractive for exploitation.
OpenCVE Enrichment