CVE-2025-70147 - ProjectWorlds Online Time Table Generator Authentication Bypass

CVE-2025-70147 - ProjectWorlds Online Time Table Generator Authentication Bypass

CVE ID : CVE-2025-70147 Published : Feb. 18, 2026, 5:21 p.m. | 39 minutes ago Description : Missing authentication in /admin/student.php and /admin/teacher.php in ProjectWorlds Online Time Table Generator 1.0 allows remote attackers to obtain sensitive information (including plaintext password field values) via direct HTTP GET requests to these endpoints without a valid session. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Published
Feb. 18, 2026
Affected Product: php