CVE-2024-6036

A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240410 allows any user to restart the server at will by sending a specific request to the `/queue/join?` endpoint with `"fn_index":66`. This unrestricted server restart capability can severely disrupt service availability, cause data loss or corruption, and potentially compromise system integrity.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:gaizhenbiao:chuanhuchatgpt:20240410:*:*:*:*:*:*:*

History

15 Jul 2025, 13:20

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.5
v2 : unknown
v3 : 9.1
CPE cpe:2.3:a:gaizhenbiao:chuanhuchatgpt:20240410:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
First Time Gaizhenbiao
Gaizhenbiao chuanhuchatgpt
References () https://huntr.com/bounties/e9eaaea9-5750-4955-9142-2f12ad4b06db - () https://huntr.com/bounties/e9eaaea9-5750-4955-9142-2f12ad4b06db - Exploit, Third Party Advisory

Information

Published : 2024-07-10 23:15

Updated : 2025-07-15 13:20


NVD link : CVE-2024-6036

Mitre link : CVE-2024-6036

CVE.ORG link : CVE-2024-6036


JSON object : View

Products Affected

gaizhenbiao

  • chuanhuchatgpt
CWE
CWE-400

Uncontrolled Resource Consumption

NVD-CWE-noinfo