cbcvebase.
CVE-2024-9159
published 2025-03-20

CVE-2024-9159: An incorrect authorization vulnerability exists in gaizhenbiao/chuanhuchatgpt version git c91dbfc. The vulnerability allows any user to restart the server at…

PriorityP336medium6.5CVSS 3.0
AVNACLPRLUINSUCNINAH
EPSS
0.60%
44.3th percentile
An incorrect authorization vulnerability exists in gaizhenbiao/chuanhuchatgpt version git c91dbfc. The vulnerability allows any user to restart the server at will, leading to a complete loss of availability. The issue arises because the function responsible for restarting the server is not properly guarded by an admin check.

Affected

2 ranges
VendorProductVersion rangeFixed in
gaizhenbiaochuanhuchatgpt
gaizhenbiaogaizhenbiao_chuanhuchatgptunspecified – latest
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.