PT-2025-12270 · Unknown · Gaizhenbiao/Chuanhuchatgpt

Published

2025-03-20

·

Updated

2025-03-20

·

CVE-2024-9159

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions gaizhenbiao/chuanhuchatgpt version git c91dbfc
Description An incorrect authorization issue exists, allowing any user to restart the server at will. This leads to a complete loss of availability due to the function responsible for restarting the server not being properly guarded by an admin check.
Recommendations For gaizhenbiao/chuanhuchatgpt version git c91dbfc, consider implementing an admin check for the server restart function to prevent unauthorized access. As a temporary workaround, restrict access to the server restart functionality to minimize the risk of exploitation.

Exploit

Fix

Incorrect Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-9159
PYSEC-2025-96

Affected Products

Gaizhenbiao/Chuanhuchatgpt