Executive brief
Oracle WebCenter Content, a platform used for managing corporate documents and digital assets, contains a security vulnerability in its Content Server component. A low-privileged user can exploit this flaw to gain unauthorized access to sensitive business data or modify existing records. Successful exploitation requires a legitimate user to perform a specific action, such as clicking a link, and could potentially allow the attacker to impact other integrated systems.
Technical details
A vulnerability in the Content Server component of Oracle WebCenter Content (versions 12.2.1.4.0 and 14.1.2.0.0) allows for unauthorized data access and modification. The flaw is categorized by a CVSS 'Scope Change,' indicating that an exploit can impact components beyond the immediate security scope of the Content Server. An attacker with low-level privileges can execute the attack over the network via HTTP, though it requires interaction from a victim (User Interaction: Required). Successful exploitation can result in complete access to all accessible data within the product and unauthorized update or delete capabilities for certain records. The vulnerability was addressed in the Oracle July 2026 Critical Patch Update.
Affected products
- Oracle WebCenter Content 12.2.1.4.0, 14.1.2.0.0
Timeline
- 2026-07-21: advisory: Initial disclosure by Oracle in the July 2026 CPU