Executive brief
Oracle WebCenter Content, a platform used by organizations to manage and share business documents, contains a vulnerability in its Content Server component. An unauthenticated attacker could potentially take full control of the system if they can trick a legitimate user into performing a specific action, such as clicking a malicious link. A successful exploit could lead to the total loss of data confidentiality, integrity, and service availability.
Technical details
This vulnerability exists in the Content Server component of Oracle WebCenter Content (part of Oracle Fusion Middleware). It is an unauthenticated, network-based attack vector via HTTP, though it is classified as difficult to exploit (Attack Complexity: High) and requires user interaction (User Interaction: Required). While the specific vulnerability class (e.g., XSS, CSRF, or Request Smuggling) is not explicitly named in the advisory, the requirement for user interaction and the resulting 'takeover' impact suggests a high-stakes client-side or session-based attack. Successful exploitation grants the attacker full control over the affected WebCenter Content instance. Affected versions include 12.2.1.4.0 and 14.1.2.0.0.
Affected products
- Oracle WebCenter Content 12.2.1.4.0, 14.1.2.0.0
Timeline
- 2026-07-21: advisory: Published by Oracle in the July 2026 Critical Patch Update