Impact
A path traversal flaw exists in the pipeline_tools.py module of MAA‑AI MaaMCP up to version 1.1.1.dev6+g2e4a41287. By manipulating the file path used in the save_pipeline/load_pipeline functions, an attacker can access files outside the intended directory. This can lead to unauthorized disclosure of sensitive data or, if write capabilities are available, modification of arbitrary files, thereby compromising system integrity. The weakness is classified as CWE‑22.
Affected Systems
MAA‑AI’s MaaMCP, specifically all releases up to 1.1.1.dev6+g2e4a41287, are vulnerable to the path traversal issue present in pipeline_tools.py.
Risk and Exploitability
The CVSS score of 5.1 reflects a medium severity attack that can be initiated remotely. The EPSS is currently not available, and the vulnerability is not listed in the CISA KEV catalog, though the exploit code has been released publicly. The ability to trigger the flaw from a remote source increases the likelihood that an attacker could read or alter sensitive files on the host system, potentially enabling further exploitation depending on the system’s configuration.
OpenCVE Enrichment