VYPR
Critical severity9.9NVD Advisory· Published May 23, 2025· Updated Apr 23, 2026

CVE-2025-47658

CVE-2025-47658

Description

Unrestricted Upload of File with Dangerous Type vulnerability in ELEXtensions ELEX WordPress HelpDesk & Customer Ticketing System elex-helpdesk-customer-support-ticket-system allows Upload a Web Shell to a Web Server.This issue affects ELEX WordPress HelpDesk & Customer Ticketing System: from n/a through <= 3.2.9.

Affected products

1
  • cpe:2.3:a:elula:wsdesk:*:*:*:*:free:wordpress:*:*
    Range: <3.3.0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.