Cross-Site Scripting Vulnerability in OpenText Vertica
CVE-2025-12453
5.1MEDIUM
What is CVE-2025-12453?
A vulnerability exists in OpenText Vertica due to improper neutralization of input during web page generation, allowing malicious actors to launch reflected cross-site scripting (XSS) attacks. This flaw specifically affects the Vertica management console, creating potential security risks for its users. By exploiting this vulnerability, attackers can execute arbitrary scripts in the user's web browser, compromising user data and potentially leading to unauthorized access or manipulation of sensitive information.
Affected Version(s)
Vertica 10.0 <= 10.x
Vertica 11.0 <= 11.x
Vertica 12.0 <= 12.x
