CVE-2019-7850 is a critical command injection vulnerability affecting Adobe Campaign Classic versions 18.10.5-8984 and earlier, impacting installations across various operating systems including Linux and Windows. With a CVSS score of 9.8, this vulnerability allows for unauthenticated, low-complexity remote exploitation, potentially leading to arbitrary code execution with full confidentiality, integrity, and availability impact. While not listed in CISA's KEV catalog and lacking public exploit code in Metasploit or ExploitDB, it has garnered significant community discussion and media coverage, indicating awareness and potential for future exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 18.10.5.8984CPE matchmatch criteria | cpe:2.3:a:adobe:campaign:*:*:*:*:classic:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.