External risk intelligence

Adobe Campaign Classic SSRF Vulnerability Allows Privilege Escalation.

CVE advisorySeverity: CRITICAL (CVSS 9.9)

CVE-2026-82443

Adobe Campaign Classic is an enterprise-grade marketing automation and campaign management platform. These systems are typically deployed as web-accessible applications to manage external customer data, integration endpoints, and marketing services, making them common targets for public-facing web service exposure.

Server-Side Request Forgery

Adobe Campaign

7.4.3 and earlier7.4.4

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

External exposure likelihood

Horizon Alert

Summary of the vulnerability and why it matters

This advisory concerns a critical vulnerability in Adobe Campaign Classic that allows a low-privileged attacker to gain elevated access to internal resources, potentially impacting sensitive data and system controls.

  • Privilege escalation via server-side request forgery.
  • Affects marketing and customer data management systems.
  • Confirm if Adobe Campaign Classic is in use.

Attack Path

How an attacker could exploit the issue

An attacker with low privileges could exploit this vulnerability by sending a specially crafted request to Adobe Campaign Classic. This would allow them to trick the application into making requests to internal network resources on their behalf, potentially leading to unauthorized access and modification of sensitive data or system functions.

  • Requires low-privileged access.
  • Triggers via network request.
  • Leads to privilege escalation.

Live Threat

Current exploitation, exposure, and threat context

A Server-Side Request Forgery vulnerability in Adobe Campaign Classic could allow a low-privileged attacker to gain elevated access to internal resources, changing the scope of impact. This exploitation does not require user interaction.

  • Internal network resources could be accessed.
  • An attacker could send requests through the server.
  • Privilege escalation to administrative levels.

Operational Fix

Recommended remediation, mitigation, and detection steps

The real-world ownership for this Adobe Campaign Classic vulnerability likely falls to the platform or application teams responsible for its deployment and maintenance, with collaboration from network and security teams to assess external reachability. The initial practical step is to locate all instances of Adobe Campaign Classic, confirm their exposure and criticality, identify the specific business owner, and then prioritize remediation efforts.

  • Platform or application owner responsible.
  • Verify external reachability and business impact.
  • Plan vendor coordination and phased remediation.

Supplementary metadata

Validate whether this threat affects your internet-facing exposure.

Halo Threat Intelligence helps prioritize remediation with Halo Surface Signal and H/A/L/O context. Start exposure validation with a free external attack surface trial.

Frequently asked questions

What is Adobe Campaign Classic?

Adobe Campaign Classic is an enterprise marketing automation platform designed for managing customer data, email campaigns, and marketing workflows. Organizations use it to integrate various marketing services and communicate with customer bases at scale.

What does this SSRF vulnerability mean for CVE-2026-82443?

This vulnerability is a Server-Side Request Forgery (CWE-918). It means an attacker can manipulate the application into making unauthorized network requests to internal resources, essentially using the server as a proxy to reach parts of the network it should not be interacting with.

How is this vulnerability triggered?

An attacker triggers this by sending a specially crafted network request to the application. It does not require any interaction from other users. Note that the vulnerability is specifically triggered by these crafted requests; simply logging in or using the application normally for its intended marketing tasks does not cause the issue.

Is my Adobe Campaign Classic instance at risk?

According to Halo Surface Signal, these systems are often deployed as web-accessible applications to handle marketing integrations, increasing the likelihood of exposure. You should assess if your specific installation is reachable from the internet, as that significantly increases the potential risk profile.

Do I need to take action if I run Adobe Campaign Classic?

Yes. First, inventory all your deployments to confirm if they fall under the affected versions. Identify the teams responsible for these systems and coordinate with them to verify if the instances are exposed to the network, then prioritize the implementation of official vendor security updates.

References