Skip to main content

Threat intelligence

Real Estate 7 WordPress <= 3.5.1 - Unauthenticated Privilege Escalation to Administrator

CVE-2024-13421 · realestate-7

Important: Seeing this vulnerability listed does not mean your website is affected. Exposure depends on whether you run Realestate 7 at a vulnerable version. How SiteRespond intelligence works

Vulnerability
Real Estate 7 WordPress <= 3.5.1 - Unauthenticated Privilege Escalation to Administrator
Affected software
realestate-7(Theme)
Affected versions
  • ≤ 3.5.1
Authentication
Unauthenticated
Vulnerability type
Privilege escalation
Published
11 February 2025
CISA KEV
Not listed in CISA KEV at last catalog refresh
Impact
May allow a lower-privilege user to perform actions reserved for administrators.
Source

Data imported from Wordfence Intelligence (advisory a50b3304-d55b-487a-8137-d5083c704cf4). Methodology and redistribution notes

Check whether your installed version is affected

SiteRespond Defence matches your installed Realestate 7 version against this catalog when the Defence plugin is connected to your WordPress site.