CVE-2024-10446: Projectworlds Online Time Table Generator

High severity, CVSS 7.2. EPSS: 0.5% chance of exploitation in the next 30 days.

A vulnerability classified as critical has been found in Project Worlds Online Time Table Generator 1.0. Affected is an unknown function of the file /timetable/admin/admindashboard.php?info=add_course. The manipulation of the argument c leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

Affected products

Published 2024-10-28. Last modified 2026-06-17.