The vulnerability could lead to Reflected XSS attack of cross-site scripting in Vertica management console application.This issue affects Vertica: from 10.0 through 10.X, from 11.0 through 11.X, from 12.0 through 12.X, from 23.0 through 23.X, from 24.0 through 24.X, from 25.1.0 through 25.1.X.
Project Subscriptions
No data.
No advisories yet.
Solution
https://portal.microfocus.com/s/article/KM000045853?language=en_US
Workaround
No workaround given by the vendor.
Fri, 13 Mar 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 13 Mar 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in OpenText™ Vertica allows Reflected XSS. The vulnerability could lead to Reflected XSS attack of cross-site scripting in Vertica management console application.This issue affects Vertica: from 10.0 through 10.X, from 11.0 through 11.X, from 12.0 through 12.X, from 23.0 through 23.X, from 24.0 through 24.X, from 25.1.0 through 25.1.X. | |
| Title | Improper neutralization of input during web page generation vulnerability has been discovered in OpenText™ Vertica. | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: OpenText
Published:
Updated: 2026-03-13T19:33:59.150Z
Reserved: 2025-10-28T21:28:35.834Z
Link: CVE-2025-12454
Updated: 2026-03-13T19:33:55.414Z
Status : Received
Published: 2026-03-13T19:53:47.667
Modified: 2026-03-13T19:53:47.667
Link: CVE-2025-12454
No data.
OpenCVE Enrichment
No data.