CVE-2025-27013

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Feb 18, 2025
CWE ID 862

Summary

CVE-2025-27013 is a critical vulnerability affecting the EPC MediCenter - Health Medical Clinic WordPress Theme. This issue arises due to missing authorization checks, enabling unauthorized access to restricted areas of the theme. Malicious actors can exploit this flaw by manipulating incorrectly configured access control security levels, posing a significant risk to websites utilizing the affected theme. The vulnerability spans from its initial release through its latest version. It is essential for users to update their WordPress themes and implement additional security measures to mitigate potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share