Vulnerability Key Information Vulnerability ID: CVE-2014-4822 CVSS 2.0 Base Score: 1.9 - Access Vector: Local - Access Complexity: Medium - Authentication: None - Confidentiality Impact: Partial - Integrity Impact: None - Availability Impact: None CVSS 2.0 Temporal Score: 1.4 - Exploitability: Unproven - Remediation Level: Official Fix - Report Confidence: Confirmed Affected Products: - IBM WebSphere MQ 7.5 - IBM WebSphere MQ 7.5.0.1 - IBM WebSphere MQ 7.5.0.2 - IBM WebSphere MQ 7.5.0.3 Dependent Products: - IBM WebSphere MQ 8.0 Vulnerability Impact: - May lead to information disclosure Remediation: - Refer to the appropriate IBM Security Bulletin for patch, upgrade, or recommended mitigation information. See references for details. - For other configurations: Install the corresponding system updates. References: - IBM Security Bulletin 1686339 - CVE-2014-4822 - BID-70588