CVE-2025-52732: WordPress Google Map Targeting Plugin <= 1.1.6 - Local File Inclusion Vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in RealMag777 GMap Targeting gmap-targeting allows PHP Local File Inclusion.This issue affects GMap Targeting: from n/a through <= 1.1.6.
Other sources
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in RealMag777 Google Map Targeting allows PHP Local File Inclusion. This issue affects Google Map Targeting: from n/a through 1.1.6.
— NVD
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-52732?
CVE-2025-52732 is classified as a critical local file inclusion vulnerability affecting the RealMag777 Google Map Targeting plugin.
How do I fix CVE-2025-52732?
To fix CVE-2025-52732, you should update the RealMag777 Google Map Targeting plugin to the latest version beyond 1.1.6.
What software is affected by CVE-2025-52732?
CVE-2025-52732 affects the RealMag777 Google Map Targeting plugin version 1.1.6 and earlier.
What is local file inclusion in the context of CVE-2025-52732?
Local file inclusion in CVE-2025-52732 refers to the vulnerability allowing an attacker to include files on the server via the web browser.
Can CVE-2025-52732 lead to further attacks?
Yes, CVE-2025-52732 can lead to further attacks such as remote code execution due to improper control of filenames.