CVE-2014-4767: IBM WebSphere Application Server
Medium severity, CVSS 6.5. EPSS: 2.7% chance of exploitation in the next 30 days.
IBM WebSphere Application Server (WAS) Liberty Profile 8.5.x before 8.5.5.3 does not properly use the Liberty Repository for feature installation, which allows remote authenticated users to execute arbitrary code via unspecified vectors.
Affected products
- IBM WebSphere Application Server: version 8.5.0.0 only; version 8.5.0.1 only; version 8.5.0.2 only; version 8.5.5.0 only; version 8.5.5.1 only; version 8.5.5.2 only
Published 2014-08-22. Last modified 2026-06-17.