Vulnerability in Oracle WebCenter Content of Oracle Fusion Middleware
CVE-2026-60983

7.7HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-60983?

An access control vulnerability exists within Oracle WebCenter Content, part of the Oracle Fusion Middleware suite. This flaw can be exploited by low-privileged attackers with network access via HTTP, potentially leading to unauthorized access to sensitive data. Although the vulnerability resides within Oracle WebCenter Content, it has the potential to affect other interconnected systems. Successful exploitation may allow attackers to gain comprehensive access to all data within the Oracle WebCenter Content environment, raising significant security concerns. It is crucial for users of the affected versions, 14.1.2.0.0 and 12.2.1.4.0, to take immediate action to mitigate this risk.

Affected Version(s)

Oracle WebCenter Content 14.1.2.0.0

Oracle WebCenter Content 12.2.1.4.0

References

CVSS V3.1

Score:
7.7
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.