CVE-2025-3040 | Project Worlds Online Time Table Generator 1.0 /admin/add_student.php pic unrestricted upload
A vulnerability was found in Project Worlds Online Time Table Generator 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/add_student.php. The manipulation of the argument pic leads to unrestricted upload.
This vulnerability is handled as CVE-2025-3040. The attack may be launched remotely. Furthermore, there is an exploit available.