Vulnerability Details CVE-2025-67260
The Terrapack software, from ASTER TEC / ASTER S.p.A., with the indicated components and versions has a file upload vulnerability that may allow attackers to execute arbitrary code. Vulnerable components include Terrapack TkWebCoreNG:: 1.0.20200914, Terrapack TKServerCGI 2.5.4.150, and Terrapack TpkWebGIS Client 1.0.0.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 20.6%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2025-67260
-
cpe:2.3:a:aster-te:terrapack_tkservercgi:2.5.4.150
-
cpe:2.3:a:aster-te:terrapack_tkwebcoreng:1.0.20200914
-
cpe:2.3:a:aster-te:terrapack_tpkwebgis:1.0.0