CVE-2024-6360
Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
02/10/2024
Last modified:
19/11/2025
Description
Incorrect Permission Assignment for Critical Resource vulnerability in OpenText™ Vertica could allow Privilege Abuse and result in unauthorized access or privileges to Vertica agent apikey.<br />
This issue affects Vertica: from 10.0 through 10.X, from 11.0 through 11.X, from 12.0 through 12.X, from 23.0 through 23.X, from 24.0 through 24.X.
Impact
Base Score 4.0
6.90
Severity 4.0
MEDIUM
Base Score 3.x
9.80
Severity 3.x
CRITICAL
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:microfocus:vertica:*:*:*:*:*:*:*:* | 10.0.0-0 (including) | 12.0.4-30 (excluding) |
| cpe:2.3:a:microfocus:vertica:*:*:*:*:*:*:*:* | 23.0.0-0 (including) | 23.3.0-11 (excluding) |
| cpe:2.3:a:microfocus:vertica:*:*:*:*:*:*:*:* | 23.4.0-0 (including) | 23.4.0-13 (excluding) |
| cpe:2.3:a:opentext:vertica:*:*:*:*:*:*:*:* | 24.1.0-0 (including) | 24.1.0-8 (excluding) |
| cpe:2.3:a:opentext:vertica:*:*:*:*:*:*:*:* | 24.2.0-0 (including) | 24.2.0-4 (excluding) |
| cpe:2.3:a:opentext:vertica:24.3.0-0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



