CVE-2025-71427 | GongRzhe Office-PowerPoint-MCP-Server up to 2.0.7 MCP Call save_presentation/open_presentation/manage_image output_path path traversal
A vulnerability was found in GongRzhe Office-PowerPoint-MCP-Server up to 2.0.7. It has been classified as critical. Affected is the function save_presentation/open_presentation/manage_image of the component MCP Call Handler. Performing a manipulation of the argument output_path results in path traversal. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is identified as CVE-2025-71427. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More