CRITICAL🇵🇱 Wersja polska

CVE-2024-6036

CVSS 9.1v3.1pub. 2024-07-10upd. 2025-07-15

A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240410 allows any user to restart the server at will by sending a specific request to the `/queue/join?` endpoint with `"fn_index":66`. This unrestricted server restart capability can severely disrupt service availability, cause data loss or corruption, and potentially compromise system integrity.

🤖 AI Analysis
How it works

The attacker sends a specially crafted HTTP request to the `/queue/join?` endpoint with the parameter `"fn_index":66`. The application does not verify the permissions or identity of the requester, allowing any network user to execute the server restart operation. The lack of any access control to this function makes the attack trivial to perform and requires no authentication.

Impact

An attacker can repeatedly restart the server, causing continuous service disruptions (DoS), potential loss or corruption of processed data, and violation of system integrity.

Mitigation & patch

Patches available from the vendor should be applied in accordance with the references. Additionally, it is recommended to restrict access to the `/queue/join` endpoint at the firewall or reverse proxy level and implement authentication mechanisms for sensitive administrative functions.

Who is affected

gaizhenbiao/ChuanhuChatGPT version 20240410

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
  • Gaizhenbiao Chuanhuchatgpt

    APP
    Gaizhenbiao
    20240410
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2024-5982CRITICAL9.8PL ✓same product

Path Traversal i RCE w ChuanhuChatGPT — niezabezpieczone dane wejściowe

CVE-2024-5823CRITICAL9.1PL ✓same product

Nadpisanie plików konfiguracyjnych w ChuanhuChatGPT (file overwrite)

CVE-2024-6037CRITICAL9.1PL ✓same product

Tworzenie arbitralnych folderów na serwerze w ChuanhuChatGPT

CVE-2024-5822CRITICAL9.8PL ✓same product

SSRF w interfejsie upload ChuanhuChatGPT — dostęp do zasobów wewnętrznych

CVE-2024-3234CRITICAL9.8PL ✓same product

Path traversal w ChuanhuChatGPT — dostęp do poufnych plików