Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
abhiphile fermat-mcp eqn_chart.py eqn_chart code injection
Vulnerability Description
A vulnerability was detected in abhiphile fermat-mcp up to 47f11def1cd37e45dd060f30cdce346cbdbd6f0a. This vulnerability affects the function eqn_chart of the file fmcp/mpl_mcp/core/eqn_chart.py. Performing a manipulation of the argument equations results in code injection. It is possible to initiate the attack remotely. The exploit is now public and may be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The project was informed of the problem early through an issue report but has not responded yet.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
对生成代码的控制不恰当(代码注入)
Vulnerability Title
Fermat MCP 代码注入漏洞
Vulnerability Description
Fermat MCP是ABHISHEK KUMAR个人开发者的一个用于数学计算的FastMCP服务器。 Fermat MCP存在代码注入漏洞,该漏洞源于对文件fmcp/mpl_mcp/core/eqn_chart.py中函数eqn_chart的参数equations的错误操作,可能导致代码注入。
CVSS Information
N/A
Vulnerability Type
N/A