CVE-2023-25444: WordPress JS Help Desk – Best Help Desk & Support Plugin plugin <= 2.7.7 - Arbitrary File Upload vulnerability
Unrestricted Upload of File with Dangerous Type vulnerability in JS Help Desk JS Help Desk – Best Help Desk & Support Plugin allows Using Malicious Files.This issue affects JS Help Desk – Best Help Desk & Support Plugin: from n/a through 2.7.7.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-25444?
CVE-2023-25444 is classified as a high severity vulnerability due to the risk of arbitrary file uploads.
How do I fix CVE-2023-25444?
To mitigate CVE-2023-25444, you should update the JS Help Desk – Best Help Desk & Support Plugin to the latest version beyond 2.7.7.
What impact does CVE-2023-25444 have on my website?
CVE-2023-25444 can allow attackers to upload malicious files, potentially compromising your website's security.
Which versions are affected by CVE-2023-25444?
CVE-2023-25444 affects all versions of the JS Help Desk – Best Help Desk & Support Plugin up to and including 2.7.7.
What can attackers do with CVE-2023-25444?
Attackers exploiting CVE-2023-25444 can upload dangerous files that may lead to remote code execution or data theft.