Vulnerabilities > Algan

DATE CVE VULNERABILITY TITLE RISK
2022-12-02 CVE-2022-2807 SQL Injection vulnerability in Algan Prens Student Information System
Algan Yazılım Prens Student Information System product has an unauthenticated SQL Injection vulnerability.
network
low complexity
algan CWE-89
critical
9.8
2022-12-02 CVE-2022-2808 Authorization Bypass Through User-Controlled Key vulnerability in Algan Prens Student Information System
Authorization Bypass Through User-Controlled Key vulnerability in Algan Software Prens Student Information System allows Object Relational Mapping Injection.This issue affects Prens Student Information System: before 2.1.11.
network
low complexity
algan CWE-639
8.8