EPC MediCenter WordPress Theme Missing Authorization Vulnerability Allowing Sensitive Data Exposure

Vulnerability

A missing authorization vulnerability has been identified in the EPC MediCenter - Health Medical Clinic WordPress Theme, versions prior to 14.7. This vulnerability allows exploitation of incorrectly configured access control security levels, leading to unauthorized exposure of sensitive data that is typically restricted from regular users.

Impact

Exploitation of this vulnerability could result in unauthorized access to sensitive information, which may be used to exploit other weaknesses within the system.

Remediation

Users are advised to update to version 14.7 or later to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
7.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.