CVE-2025-15153: PbootCMS SQLite Database pbootcms.db file access
A weakness has been identified in PbootCMS up to 3.2.12. Impacted is an unknown function of the file /data/pbootcms.db of the component SQLite Database. Executing a manipulation can lead to files or directories accessible. It is possible to launch the attack remotely. Attacks of this nature are highly complex. The exploitability is considered difficult. The exploit has been made available to the public and could be used for attacks. Modifying the configuration settings is advised.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15153?
CVE-2025-15153 has been classified as a medium severity vulnerability due to its potential for remote exploitation.
How do I fix CVE-2025-15153?
To fix CVE-2025-15153, you should upgrade PbootCMS to version 3.2.13 or later to mitigate the vulnerability.
What components of PbootCMS are affected by CVE-2025-15153?
CVE-2025-15153 affects the SQLite Database component found in the /data/pbootcms.db file of PbootCMS versions up to 3.2.12.
Can CVE-2025-15153 be exploited remotely?
Yes, CVE-2025-15153 can be exploited remotely, allowing an attacker to manipulate database files or directories.
What type of attacks are associated with CVE-2025-15153?
CVE-2025-15153 is associated with attacks that can lead to unauthorized access to files or directories within the application.