CVE-2026-2123
OpenText Operations Agent, operations agent, windows
A security audit identified a privilege escalation vulnerability in Operations Agent(<=OA 12.29) on Windows. Under specific conditions Operations Agent may run executables from specific writeable locations.Thanks to Manuel Rickli & Philippe Leiser of Oneconsult AG for reporting this vulnerability
- CVSS
- 8.6
- EPSS
- 0.10% 1.04% percentile
- CISA KEV
- Not listed
- Published
- 2026.04.01