PatchSiren cyber security CVE debrief
CVE-2025-60947 Census CVE debrief
The Census CSWeb 8.0.1 version is vulnerable to an arbitrary file upload attack. An authenticated remote attacker could exploit this vulnerability to upload malicious files, which might lead to remote code execution. The issue has been addressed in version 8.1.0 alpha. Users of affected versions should update to the latest version as soon as possible. This vulnerability is tracked as CVE-2025-60947.
- Vendor
- Census
- Product
- CSWeb
- CVSS
- HIGH 8.8
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-02-23
- Original CVE updated
- 2026-02-23
- Advisory published
- 2026-02-23
- Advisory updated
- 2026-02-23
Who should care
System administrators and security teams responsible for Census CSWeb installations should be aware of this vulnerability. Given the high CVSS score of 8.8, this issue should be prioritized for immediate attention. Organizations using Census CSWeb 8.0.1 or earlier should take steps to mitigate the risk of exploitation.
Technical summary
CVE-2025-60947 is a high-severity vulnerability in Census CSWeb 8.0.1 that allows for arbitrary file uploads. An authenticated remote attacker could leverage this vulnerability to upload malicious files, potentially leading to remote code execution. The vulnerability's CVSS vector is CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H, indicating a high impact on confidentiality, integrity, and availability. The issue was fixed in version 8.1.0 alpha. The vulnerability's details are documented in the CVE record and the National Vulnerability Database (NVD).
Defensive priority
High priority should be given to updating Census CSWeb to version 8.1.0 alpha or later. In the meantime, defenders should monitor for suspicious file upload activity and restrict access to the CSWeb application to minimize the attack surface.
Recommended defensive actions
- Update Census CSWeb to version 8.1.0 alpha or later.
- Monitor for suspicious file upload activity.
- Restrict access to the CSWeb application.
- Implement additional security measures to detect and prevent malicious file uploads.
- Review and update incident response plans to address potential exploitation.
Evidence notes
The source item provided is a CISA CSAF advisory detailing the vulnerability in Census CSWeb. The advisory confirms that the issue allows for arbitrary file uploads and provides details on the affected versions and the fix in version 8.1.0 alpha. Additional information can be found in the CVE record and the NVD.
Sources and references
Verified primary and authoritative sources
-
CVE-2025-60947 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2025-60947
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2025-60947 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2025-60947
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Source item URL
Unverified legacy reference
URL: https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/IT/white/2026/va-26-082-01.json
cisa_csaf
-
Source reference
Unverified legacy reference
URL: https://github.com/hx381/cspro-exploits
Reference
-
Source reference
Unverified legacy reference
URL: https://github.com/csprousers/csweb/commit/eba0b59a243390a1a4f9524cce6dbc0314bf0d91
Reference
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.