PT-2026-25342 · Opentext · Vertica
Published
2026-03-13
·
Updated
2026-03-16
·
CVE-2025-12453
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
OpenText Vertica versions 10.0 through 10.X
OpenText Vertica versions 11.0 through 11.X
OpenText Vertica versions 12.0 through 12.X
OpenText Vertica versions 23.0 through 23.X
OpenText Vertica versions 24.0 through 24.X
OpenText Vertica versions 25.1.0 through 25.1.X
OpenText Vertica versions 25.2.0 through 25.2.X
OpenText Vertica versions 25.3.0 through 25.3.X
Description
The software contains an improper neutralization of input during web page generation, leading to a reflected cross-site scripting (XSS) condition. This issue can result in a reflected XSS attack targeting the Vertica management console application. Cross-site scripting occurs when an application includes malicious code in its output, which is then executed by a user's browser.
Recommendations
OpenText Vertica versions 10.0 through 10.X: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
OpenText Vertica versions 11.0 through 11.X: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
OpenText Vertica versions 12.0 through 12.X: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
OpenText Vertica versions 23.0 through 23.X: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
OpenText Vertica versions 24.0 through 24.X: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
OpenText Vertica versions 25.1.0 through 25.1.X: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
OpenText Vertica versions 25.2.0 through 25.2.X: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
OpenText Vertica versions 25.3.0 through 25.3.X: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Vertica