216.73.216.226

CVE-2025-15153

· Published 28/12/2025 21:15 · Modified 29/12/2025 15:57

Labels: CVE-2025-15153 2025-12-28CVE-2025-15153CWE-425[email protected]

Essential information

Published
28/12/2025 21:15
Modified
29/12/2025 15:57
Author
Creator
CVSS
6.3 MEDIUM (v3) 6.3 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A weakness has been identified in PbootCMS up to 3.2.12. Impacted is an unknown function of the file /data/pbootcms.db of the component SQLite Database. Executing manipulation can lead to files or directories accessible. It is possible to launch the attack remotely. Attacks of this nature are highly complex. The exploitability is considered difficult. The exploit has been made available to the public and could be exploited. Modifying the configuration settings is advised.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
pbootcms / pbootcms cpe:2.3:a:pbootcms:pbootcms:*:*:*:*:*:*:*:*
sqlite / sqlite cpe:2.3:a:sqlite:sqlite:*:*:*:*:*:*:*:*

References