Impact
The vulnerability arises from improper path handling in the read_context function the Path Resolution component in bsmi021 mcp-file-context-server. An attacker can manipulate the path argument to trigger directory traversal, allowing access to arbitrary files on the server. The flaw is exploitable remotely and has been publicly demonstrated, creating a confidentiality risk if the attacker can read sensitive files.
Affected Systems
The affected product is bsmi021 mcp-file-context-server, version 1.0.0. No other versions have been identified as vulnerable, and the project has not addressed the issue yet.
Risk and Exploitability
The CVSS score of 6.9 denotes moderate severity. The exploit is publicly available and can be invoked using a crafted request to the read_context endpoint, meaning a remote attacker could read arbitrary files. The project is not listed in the CISA KEV catalog, and the EPSS score is not available, but the public nature of the exploit suggests a non-negligible risk as long as unpatched deployments exist.
OpenCVE Enrichment