Impact
A vulnerability in the WebCenter Content: Imaging product allows a low‑privileged attacker with network access via HTTP to compromise the system. The flaw results in takeover of WebCenter Content: Imaging, leading to complete loss of confidentiality, integrity, and availability. The weakness is characterized by an improper access control that permits unauthorized remote exploitation.
Affected Systems
Oracle WebCenter Content: Imaging versions 12.2.1.4.0 and 14.1.2.0.0 are affected.
Risk and Exploitability
The CVSS 3.1 Base Score of 8.8 indicates high severity, with no user interaction required and a low attack complexity. Exploitation is feasible over the network for an attacker with low privileges. The EPSS score of less than 1% suggests a low probability of exploitation in the wild at present, and the vulnerability is not listed in the CISA KEV catalog.
OpenCVE Enrichment