CVE-2023-7248

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
15/03/2024
Last modified:
26/07/2024

Description

<br /> Certain functionality in OpenText Vertica Management console might be prone to bypass via crafted requests. <br /> <br /> The vulnerability would affect one of Vertica’s authentication functionalities by allowing specially crafted requests and sequences. <br /> This issue impacts the following Vertica Management Console versions:<br /> 10.x<br /> 11.1.1-24 or lower<br /> 12.0.4-18 or lower<br /> <br /> Please upgrade to one of the following Vertica Management Console versions:<br /> 10.x to upgrade to latest versions from below.<br /> 11.1.1-25<br /> 12.0.4-19<br /> 23.x<br /> 24.x<br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:opentext:vertica:*:*:*:*:*:*:*:* 10.0.0-0 (including) 10.1.1-26 (including)
cpe:2.3:a:opentext:vertica:*:*:*:*:*:*:*:* 11.0.0-0 (including) 11.1.1-25 (excluding)
cpe:2.3:a:opentext:vertica:*:*:*:*:*:*:*:* 12.0.0-0 (including) 12.0.4-19 (excluding)


References to Advisories, Solutions, and Tools