VendorsOpenTextverticaall versions
Vulnerabilities

OpenText Vertica

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2016-2002
The validateAdminConfig handler in the Analytics Management Console in HPE Vertica 7.0.x before 7.0.2.12, 7.1.x before 7.1.2-12, and 7.2.x before 7.2.2-1 allows remote attackers to execute arbitrary commands via the mcPort parameter, aka ZDI-CAN-3417.
Published 2016-04-20 · Modified
10.0EPSS 0.031
CVE-2017-5802
A Remote Gain Privileged Access vulnerability in HPE Vertica Analytics Platform version v4.1 and later was found.
Published 2018-02-15 · Modified
10.0EPSS 0.023
CVE-2023-7248
OpenText Vertica Management console might be prone to bypass via crafted requests
Published 2024-03-15 · Modified
9.8EPSS 0.003
CVE-2024-6360
Incorrect Permission Assignment for Critical Resource vulnerability has been discovered in OpenText™ Vertica.
Published 2024-10-02 · Analyzed
9.8EPSS 0.003
CVE-2015-6867
The vertica-udx-zygote process in HP Vertica 7.1.1 UDx does not require authentication, which allows remote attackers to execute arbitrary commands via a crafted packet, aka ZDI-CAN-2914.
Published 2015-11-04 · Modified
7.5EPSS 0.047
CVE-2025-12455
Username Enumeration Observable Response Discrepancy vulnerability has been discovered in OpenText™ Vertica.
Published 2026-03-13 · Analyzed
7.5EPSS 0.003
CVE-2025-12453
Improper neutralization of input during web page generation vulnerability has been discovered in OpenText™ Vertica.
Published 2026-03-13 · Analyzed
6.1EPSS 0.002
CVE-2025-12454
Improper neutralization of input during web page generation vulnerability has been discovered in OpenText™ Vertica.
Published 2026-03-13 · Analyzed
6.1EPSS 0.002