Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2fhv-6v4j-h4qx

Опубликовано: 08 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 2.1
CVSS3: 6.3

Описание

A vulnerability was identified in XixianLiang HarmonyOS-mcp-server 0.1.0. This vulnerability affects the function input_text. The manipulation of the argument text leads to os command injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

A vulnerability was identified in XixianLiang HarmonyOS-mcp-server 0.1.0. This vulnerability affects the function input_text. The manipulation of the argument text leads to os command injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

EPSS

Процентиль: 74%
0.00841
Низкий

2.1 Low

CVSS4

6.3 Medium

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 6.3
nvd
2 дня назад

A vulnerability was identified in XixianLiang HarmonyOS-mcp-server 0.1.0. This vulnerability affects the function input_text. The manipulation of the argument text leads to os command injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

EPSS

Процентиль: 74%
0.00841
Низкий

2.1 Low

CVSS4

6.3 Medium

CVSS3

Дефекты

CWE-77