high · CVSS v3 6.8 · CVSS v4 7.6
CVE-2025-71427
Office-PowerPoint-MCP-Server versions up to 2.0.7 allow path traversal via absolute paths or "../" sequences, enabling attackers to read or
Overview
Office-PowerPoint-MCP-Server versions up to 2.0.7 allow path traversal via absolute paths or "../" sequences, enabling attackers to read or write files outside the intended directory. This flaw can be exploited through AI prompt injection to overwrite server‑writable files or load arbitrary content. The vulnerability is significant for any organization running the MCP server and exposing it to external callers.
Description
Office-PowerPoint-MCP-Server through 2.0.7 contains a path traversal vulnerability that allows MCP callers to write and read files outside the working directory by supplying absolute paths or ../ sequences. Attackers can steer an AI agent via prompt injection to abuse save_presentation, open_presentation, or manage_image output_path to overwrite any server-writable file or load external files.
Impact
The vulnerability compromises confidentiality by allowing unauthorized file reads, integrity by permitting overwrites of critical files, and availability if critical files are corrupted. Administrators and system operators are directly impacted, as they must secure the server and its file handling. End‑users may be affected if the server hosts shared presentations or images.
Remediation
Apply the official patch to upgrade to version 2.0.8 or later. If an upgrade is not immediately possible, enforce strict input validation: reject absolute paths, strip "../" sequences, and restrict file operations to a dedicated safe directory. Additionally, disable or sandbox the AI prompt injection interface, and monitor file system changes for anomalous writes.
Risk context
The CVSS v3 score of 6.8 and v4 score of 7.6 classify this flaw as high severity, indicating a substantial risk if exploited. With no EPSS data available, defenders should treat it as a priority vulnerability that warrants timely remediation.
Affected products
- Office-PowerPoint-MCP-Server 2.0.7
- Office-PowerPoint-MCP-Server 2.0.6
- Office-PowerPoint-MCP-Server 2.0.5
- Office-PowerPoint-MCP-Server 2.0.4
- Office-PowerPoint-MCP-Server 2.0.3
- Office-PowerPoint-MCP-Server 2.0.2
- Office-PowerPoint-MCP-Server 2.0.1
- Office-PowerPoint-MCP-Server 2.0.0
Scores
- Severity
- high
- CVSS v2
- 7.1
- CVSS v3
- 6.8
- CVSS v4
- 7.6
- EPSS
- —