PT-2026-1826 · Unknown · Terminal-Controller-Mcp

Publicado

2026-01-07

·

Atualizado

2026-01-09

·

CVE-2025-61492

CVSS v3.1

10

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions terminal-controller-mcp version 0.1.7
Description A command injection issue exists in the execute command function of the software. Attackers can execute arbitrary commands by providing a crafted input. The vulnerability can lead to arbitrary code execution. The vulnerable parameter is a crafted input to the execute command function.
Recommendations Implement strict input validation.

Exploit

Correção

Command Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-61492
GHSA-H4RF-624J-GJ33

Produtos afetados

Terminal-Controller-Mcp