PT-2026-27319 · Unknown · Visualfc Liteide
CVSS v4.0
2.9
Low
| Vector | AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:L/SI:L/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:N/AU:N/R:U/V:D/RE:L/U:Green |
Name of the Vulnerable Software and Affected Versions
visualfc liteide versions prior to x38.4
Description
An inconsistent interpretation of HTTP requests ('HTTP Request/Response Smuggling') exists in visualfc liteide within the
http parser.C program files and the liteidex/src/3rdparty/qjsonrpc/src/http-parser modules. This issue could allow for the smuggling of HTTP requests and responses.Recommendations
Update to version x38.4 or later.
Exploit
Fix
HTTP Request/Response Smuggling
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Visualfc Liteide