Impact
An unauthenticated attacker with network access to HTTP can compromise Oracle WebCenter Content. Successful exploitation allows the attacker to create, delete, or modify critical data and to gain full unauthorized access to all data that the product hosts. The vulnerability may also affect other Oracle Fusion Middleware components because the scope can change.
Affected Systems
Oracle WebCenter Content version 12.2.1.4.0 and version 14.1.2.0.0 are affected.
Risk and Exploitability
The CVSS score of 8.7 classifies this as a high‑impact vulnerability. The exploit requires only network access and does not need user interaction. While the EPSS score is not available, the absence of a KEV listing suggests that the vulnerability is not currently known to be actively exploited in the wild, but the high severity and unauthenticated nature warrant close attention.
OpenCVE Enrichment