CVE-2024-6036

A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240410 allows any user to restart the server at will by sending a specific request to the `/queue/join?` endpoint with `"fn_index":66`. This unrestricted server restart capability can severely disrupt service availability, cause data loss or corruption, and potentially compromise system integrity.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:gaizhenbiao:chuanhuchatgpt:20240410:*:*:*:*:*:*:*

History

15 Jul 2025, 13:20

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.5
v2 : unknown
v3 : 9.1
First Time Gaizhenbiao
Gaizhenbiao chuanhuchatgpt
CPE cpe:2.3:a:gaizhenbiao:chuanhuchatgpt:20240410:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
References () https://huntr.com/bounties/e9eaaea9-5750-4955-9142-2f12ad4b06db - () https://huntr.com/bounties/e9eaaea9-5750-4955-9142-2f12ad4b06db - Exploit, Third Party Advisory

21 Nov 2024, 09:48

Type Values Removed Values Added
References () https://huntr.com/bounties/e9eaaea9-5750-4955-9142-2f12ad4b06db - () https://huntr.com/bounties/e9eaaea9-5750-4955-9142-2f12ad4b06db -

11 Jul 2024, 13:05

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad en gaizhenbiao/chuanhuchatgpt versión 20240410 permite a cualquier usuario reiniciar el servidor a voluntad enviando una solicitud específica al endpoint `/queue/join?` con `"fn_index":66`. Esta capacidad de reinicio del servidor sin restricciones puede alterar gravemente la disponibilidad del servicio, provocar pérdida o corrupción de datos y potencialmente comprometer la integridad del sistema.

10 Jul 2024, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-10 23:15

Updated : 2025-07-15 13:20


NVD link : CVE-2024-6036

Mitre link : CVE-2024-6036

CVE.ORG link : CVE-2024-6036


JSON object : View

Products Affected

gaizhenbiao

  • chuanhuchatgpt
CWE
CWE-400

Uncontrolled Resource Consumption

NVD-CWE-noinfo