Vulnerability in Oracle WebCenter Content Compromises Data Integrity
CVE-2026-60657
What is CVE-2026-60657?
A vulnerability exists in Oracle WebCenter Content, part of Oracle Fusion Middleware, affecting versions 12.2.1.4.0 and 14.1.2.0.0. This flaw allows a low-privileged attacker with HTTP network access to compromise the system, requiring human interaction from an individual other than the attacker. Exploitation can lead to unauthorized creation, deletion, or modification of critical data within Oracle WebCenter Content. The impact of successful attacks extends beyond the immediate product, potentially affecting associated systems. Due to this vulnerability, attackers can gain unauthorized access to sensitive data, undermining the integrity and confidentiality of the content stored within Oracle WebCenter Content.
Affected Version(s)
Oracle WebCenter Content 12.2.1.4.0
Oracle WebCenter Content 14.1.2.0.0