📦 Online Time Table Generator

by Projectworlds

🔍 What is Online Time Table Generator?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-70146

CRITICAL CVSS 9.1 Feb 18, 2026

This vulnerability allows remote attackers to perform administrative operations without authentication in ProjectWorlds Online Time Table Generator 1.0. Attackers can add, delete, or modify records by...

CVE-2025-5008

HIGH CVSS 7.3 May 20, 2025

This critical SQL injection vulnerability in Online Time Table Generator 1.0 allows remote attackers to execute arbitrary SQL commands via the 'e' parameter in /admin/add_teacher.php. Attackers can po...

CVE-2025-5004

HIGH CVSS 7.3 May 20, 2025

CVE-2025-5004 is a critical SQL injection vulnerability in projectworlds Online Time Table Generator 1.0 that allows remote attackers to execute arbitrary SQL commands via the c/subname parameter in /...

CVE-2025-2661

HIGH CVSS 7.3 Mar 23, 2025

This critical SQL injection vulnerability in Project Worlds Online Time Table Generator 1.0 allows remote attackers to execute arbitrary SQL commands via the 'e' parameter in /staff/index.php. Attacke...

CVE-2025-2659

HIGH CVSS 7.3 Mar 23, 2025

This critical SQL injection vulnerability in Project Worlds Online Time Table Generator 1.0 allows remote attackers to execute arbitrary SQL commands via the 'e' parameter in /student/index.php. This ...

CVE-2025-2660

HIGH CVSS 7.3 Mar 23, 2025

This critical SQL injection vulnerability in Project Worlds Online Time Table Generator 1.0 allows remote attackers to execute arbitrary SQL commands via the 'e' parameter in /admin/index.php. This ca...

CVE-2025-3040

MEDIUM CVSS 6.3 Mar 31, 2025

CVE-2025-3040 is a critical unrestricted file upload vulnerability in Project Worlds Online Time Table Generator 1.0. Attackers can remotely upload malicious files via the /admin/add_student.php endpo...

CVE-2025-2662

MEDIUM CVSS 6.3 Mar 23, 2025

This critical SQL injection vulnerability in Project Worlds Online Time Table Generator 1.0 allows attackers to execute arbitrary SQL commands via the 'course' parameter in student/studentdashboard.ph...