CVE-2025-54032: WordPress Real Estate Manager Pro Plugin <= 12.7.3 - Cross Site Scripting (XSS) Vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WebCodingPlace Real Estate Manager Pro allows Reflected XSS. This issue affects Real Estate Manager Pro: from n/a through 12.7.3.
Other sources
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WebCodingPlace Real Estate Manager Pro real-estate-manager-pro allows Reflected XSS.This issue affects Real Estate Manager Pro: from n/a through <= 12.7.3.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54032?
The severity of CVE-2025-54032 is classified as moderate due to the potential for reflected cross-site scripting (XSS) attacks.
How do I fix CVE-2025-54032?
To fix CVE-2025-54032, upgrade WebCodingPlace Real Estate Manager Pro or the WordPress Real Estate Manager Pro Plugin to version 12.7.4 or later.
What types of attacks can CVE-2025-54032 enable?
CVE-2025-54032 can enable reflected cross-site scripting (XSS) attacks, allowing attackers to inject malicious scripts into web pages.
What versions are affected by CVE-2025-54032?
CVE-2025-54032 affects WebCodingPlace Real Estate Manager Pro from any version up to and including 12.7.3.
Is CVE-2025-54032 relevant to both WebCodingPlace and WordPress?
Yes, CVE-2025-54032 is relevant to both WebCodingPlace Real Estate Manager Pro and its WordPress Real Estate Manager Pro Plugin.