Back

CRITICAL

Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (component: Client Bundle)

Published Aug 18, 2026

Description

Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (component: Client Bundle). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via T3, IIOP to compromise Oracle WebCenter Enterprise Capture. Successful attacks of this vulnerability can result in takeover of Oracle WebCenter Enterprise Capture. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner oracle
Published Aug 18, 2026
Updated Aug 21, 2026
Reserved Jul 8, 2026
CISA Vulnrichment
Updated Aug 20, 2026
NVD
Status Analyzed
Modified Aug 21, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner oracle
Published Aug 18, 2026
Updated Aug 21, 2026
Exploited since n/a
EUVD-2026-61285