Impact
The vulnerability is an OS command injection flaw in the ssh_run_command function of the HackingBuddyGPT project. By manipulating input to this function, an attacker can execute arbitrary shell commands, potentially gaining full system compromise. The flaw is rooted in improper handling of user-supplied data and maps to CWE-77 and CWE-78. Because the function can be reached over SSH, the attack can be launched from a remote network.
Affected Systems
The affected product is ipa‑lab's HackingBuddyGPT, version up to 0.5.0. Earlier releasesusers running any 0.5.0 or earlier build are potentially vulnerable.
Risk and Exploitability
The CVSS base score is 5.3, indicating moderate severity. EPSS score of 1% denotes a very low but non‑zero exploitation probability, and it is not listed in the CISA KEV catalog. The exposed SSH interface makes it an external attack vector, and the public exploit code available on the project's issue tracker increases the practical threat level. No vendor patch is currently available, so risk remains until mitigated.
OpenCVE Enrichment