CVE-2014-4767
IBM WebSphere Application Server (WAS) Liberty Profile 8.5.x before 8.5.5.3 does not properly use the Liberty Repository for feature installation, which allows remote authenticated users to execute arbitrary code via unspecified vectors.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0108 (1.1%)
Percentile: 77.9%
EPSS: 2026-05-06
Affects
ibm:websphere_application_serverTechnical description
IBM WebSphere Application Server (WAS) Liberty Profile 8.5.x before 8.5.5.3 does not properly use the Liberty Repository for feature installation, which allows remote authenticated users to execute arbitrary code via unspecified vectors.
Published: 8/22/2014, 1:55:08 AM
Last modified: 5/6/2026, 10:30:45 PM
References
- http://www-01.ibm.com/support/docview.wss?uid=swg1PI21284
- http://www-01.ibm.com/support/docview.wss?uid=swg21681249
- http://www.securityfocus.com/bid/69297
- https://exchange.xforce.ibmcloud.com/vulnerabilities/94832
- http://www-01.ibm.com/support/docview.wss?uid=swg1PI21284
- http://www-01.ibm.com/support/docview.wss?uid=swg21681249
- http://www.securityfocus.com/bid/69297
- https://exchange.xforce.ibmcloud.com/vulnerabilities/94832