cbcvebase.

Oracle Webcenter Content vulnerabilities

38 known vulnerabilities affecting oracle/webcenter_content.

Total CVEs
38
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL13HIGH23MEDIUM2

Vulnerabilities

Page 2 of 2
CVE-2026-60443P3HIGHCVSS 8.7v12.2.1.4.0v14.1.2.0.02026-07-21
CVE-2026-60443 [HIGH] CWE-284 CVE-2026-60443: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Conten Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interact
nvd
CVE-2026-60525P3HIGHCVSS 8.2v12.2.1.4.0v14.1.2.0.02026-07-21
CVE-2026-60525 [HIGH] CWE-284 CVE-2026-60525: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Conten Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebCenter Content. While the vulnerability is in Oracle We
nvd
CVE-2026-46785P3CRITICALCVSS 9.3v14.1.2.0.02026-06-17
CVE-2026-46785 [CRITICAL] CWE-352 CVE-2026-46785: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Conten Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). The supported version that is affected is 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interaction from
nvd
CVE-2026-46808P3HIGHCVSS 8.7v14.1.2.0.02026-06-17
CVE-2026-46808 [HIGH] CWE-284 CVE-2026-46808: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Conten Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). The supported version that is affected is 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interaction from a per
nvd
CVE-2026-46804P3HIGHCVSS 8.7v14.1.2.0.02026-06-17
CVE-2026-46804 [HIGH] CWE-269 CVE-2026-46804: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Conten Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). The supported version that is affected is 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interaction from a per
nvd
CVE-2026-35326P3HIGHCVSS 7.2v12.2.1.4.0v14.1.2.0.02026-06-17
CVE-2026-35326 [HIGH] CWE-284 CVE-2026-35326: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Conten Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks of this vulnerability
nvd
CVE-2026-46787P3HIGHCVSS 8.0v14.1.2.0.02026-06-17
CVE-2026-46787 [HIGH] CWE-352 CVE-2026-46787: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Conten Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). The supported version that is affected is 14.1.2.0.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interaction from a
nvd
CVE-2017-3625P3HIGHCVSS 8.2v11.1.1.7v11.1.1.9+3 more2017-04-24
CVE-2017-3625 [HIGH] CVE-2017-3625: Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: C Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: Content Server). Supported versions that are affected are 11.1.1.7, 11.1.1.9, 12.2.1.0, 12.2.1.1 and 12.2.1.2. Easily "exploitable" vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attack
nvd
CVE-2017-10360P3HIGHCVSS 8.2v11.1.1.9.0v12.2.1.1.0+1 more2017-10-19
CVE-2017-10360 [HIGH] CVE-2017-10360: Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: C Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: Content Server). Supported versions that are affected are 11.1.1.9.0, 12.2.1.1.0 and 12.2.1.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require huma
nvd
CVE-2017-10040P3HIGHCVSS 8.2v11.1.1.9.0v12.2.1.1.02017-08-08
CVE-2017-10040 [HIGH] CVE-2017-10040: Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: C Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: Content Server). Supported versions that are affected are 11.1.1.9.0 and 12.2.1.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interactio
nvd
CVE-2026-46788P3HIGHCVSS 8.4v14.1.2.0.02026-06-17
CVE-2026-46788 [HIGH] CWE-284 CVE-2026-46788: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Conten Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). The supported version that is affected is 14.1.2.0.0. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interaction from a pe
nvd
CVE-2022-21552P3HIGHCVSS 7.2v12.2.1.3.0v12.2.1.4.02022-07-19
CVE-2022-21552 [HIGH] CVE-2022-21552: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Search Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Search). Supported versions that are affected are 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. While the vulnerability is in Oracle WebCenter Content,
nvd
CVE-2018-2828P3HIGHCVSS 8.2v11.1.1.9.0v12.2.1.2.0+1 more2018-04-19
CVE-2018-2828 [HIGH] CVE-2018-2828: Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: C Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: Content Server). Supported versions that are affected are 11.1.1.9.0, 12.2.1.2.0 and 12.2.1.3.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human i
nvd
CVE-2018-2596P3HIGHCVSS 8.2v11.1.1.9.0v12.2.1.2.0+1 more2018-01-18
CVE-2018-2596 [HIGH] CVE-2018-2596: Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: C Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: Content Server). Supported versions that are affected are 11.1.1.9.0, 12.2.1.2.0 and 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human
nvd
CVE-2018-2564P3HIGHCVSS 8.2v11.1.1.9.02018-01-18
CVE-2018-2564 [HIGH] CVE-2018-2564: Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: C Vulnerability in the Oracle WebCenter Content component of Oracle Fusion Middleware (subcomponent: Content Server). The supported version that is affected is 11.1.1.9.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interaction from a person
nvd
CVE-2026-60449P4HIGHCVSS 7.1v12.2.1.4.0v14.1.2.0.02026-07-21
CVE-2026-60449 [HIGH] CWE-200 CVE-2026-60449: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Conten Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle WebCenter Content executes to compromise Oracle WebCenter Conte
nvd
CVE-2023-22126P4MEDIUMCVSS 5.3v12.2.1.4.02023-10-17
CVE-2023-22126 [MEDIUM] CVE-2023-22126: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Conten Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks of this vulnerability can result in unaut
nvd
CVE-2024-20928P4MEDIUMCVSS 6.1v12.2.1.4.02024-01-16
CVE-2024-20928 [MEDIUM] CVE-2024-20928: Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Conten Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interaction from a person o
nvd