Impact
The vulnerability is a path traversal flaw in the Ansible Lightspeed MCP server that enables an attacker to manipulate AI prompts and cause the server to write files to unintended locations. By forging prompt injection payloads, an attacker can place files on the host system and potentially execute malicious commands, resulting in a full compromise of the afflicted machine and exposure of sensitive data.
Affected Systems
The flaw affects Red Hat Ansible Automation Platform 2 installations that include the Lightspeed MCP server. No specific patch version is listed; the vulnerability applies to any deployment of the product as of the advisory release.
Risk and Exploitability
The CVSS base score of 6.6 indicates medium severity. The EPSS score is below 1%, reflecting a low probability of exploitation currently, and the vulnerability is not listed in the CISA KEV catalog. An attacker would need to reach the MCP server and craft a prompt injection request, which could be done over the network if the server is exposed. Because no effective official workaround exists, limiting external exposure and monitoring traffic are critical mitigation measures.
OpenCVE Enrichment