#VU121717 Improper input validation in Oracle WebCenter Enterprise Capture - CVE-2025-43967
Published: January 20, 2026
Oracle WebCenter Enterprise Capture
Oracle
Description
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper input validation within the Client Bundle (libheif) component in Oracle WebCenter Enterprise Capture. A remote non-authenticated attacker can exploit this vulnerability to perform a denial of service (DoS) attack.