CVE-2025-3040: Projectworlds Online Time Table Generator
Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.
A vulnerability was found in Project Worlds Online Time Table Generator 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/add_student.php. The manipulation of the argument pic leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected products
- Projectworlds Online Time Table Generator: version 1.0 only
Published 2025-03-31. Last modified 2026-06-17.