Algan's vulnerability footprint is concentrated in its Prens Student Information System, a narrowly scoped educational software product where the observed weaknesses center on access-control and data-handling issues such as authorization bypass through user-controlled keys and SQL injection. These application-layer flaws are characteristic of web-facing administrative systems handling sensitive institutional data. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Algan over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-2807CRITICAL SQL Injection vulnerability in Algan Software Prens Student Information System allows SQL Injection.
This issue affects Prens Student Information System: before 2.1.11. | Dec 2, 2022 | 9.8 | 30 | NO | NO |
CVE-2022-2808HIGH Authorization Bypass Through User-Controlled Key vulnerability in Algan Software Prens Student Information System allows Object Relational Mapping Injection.
This issue affects Pr | Dec 2, 2022 | 8.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Algan.
Media articles that mention a CVE ID that affects a product developed by Algan — matched by CVE ID, not by vendor name.