Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in Quest Coexistence Manager for Notes (Free/Busy Connector modules) allows HTTP Request Smuggling via the Content-Length-Transfer-Encoding (CL.TE) attack vector. This could allow an attacker to bypass access controls, poison web caches, hijack sessions, or trigger unintended internal requests. This issue affects Coexistence Manager for Notes 3.8.2045. Other versions may also be affected.
Metrics
Affected Vendors & Products
References
History
Fri, 19 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 19 Dec 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in Quest Coexistence Manager for Notes (Free/Busy Connector modules) allows HTTP Request Smuggling via the Content-Length-Transfer-Encoding (CL.TE) attack vector. This could allow an attacker to bypass access controls, poison web caches, hijack sessions, or trigger unintended internal requests. This issue affects Coexistence Manager for Notes 3.8.2045. Other versions may also be affected. | |
| Title | HTTP Request Smuggling in Quest Coexistence Manager for Notes | |
| First Time appeared |
Quest
Quest coexistence Manager For Notes |
|
| Weaknesses | CWE-444 | |
| CPEs | cpe:2.3:a:quest:coexistence_manager_for_notes:3.8.2045:*:*:*:*:*:*:* | |
| Vendors & Products |
Quest
Quest coexistence Manager For Notes |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: SRA
Published:
Updated: 2025-12-19T19:51:14.802Z
Reserved: 2025-11-07T14:41:02.631Z
Link: CVE-2025-12874
Updated: 2025-12-19T19:50:49.706Z
Status : Received
Published: 2025-12-19T20:15:49.900
Modified: 2025-12-19T20:15:49.900
Link: CVE-2025-12874
No data.
OpenCVE Enrichment
No data.