PT-2024-21949 · Unknown · Chatgpt-Wechat-Personal

Zer0Yu

·

Published

2024-03-05

·

Updated

2025-01-21

·

CVE-2024-27565

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ChatGPT-wechat-personal (affected versions not specified)
Description A Server-Side Request Forgery (SSRF) issue in weixin.php of ChatGPT-wechat-personal allows attackers to force the application to make arbitrary requests. This enables attackers to potentially access or manipulate internal or external services.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

SSRF

Weakness Enumeration

Related Identifiers

CVE-2024-27565

Affected Products

Chatgpt-Wechat-Personal