
CVE-2025-6514
mcp-remote exposed to OS command injection
api-securityauthenticationcommand-and-control+3
7

mcp-remote exposed to OS command injection

PoC exploit for unauthenticated RCE in EITS Admin Dashboard v2.4.0 via command injection in /api/v1/debug, allowing arbitrary OS command execution on…