CVE-2026-8244

A vulnerability was identified in Industrial Application Software IAS Canias ERP 8.03. This impacts an unknown function of the component Login RMI Interface. The manipulation of the argument clientVersion leads to improper authentication. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
Configurations

No configuration.

History

24 Jul 2026, 07:10

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad fue identificada en el software de aplicación industrial IAS Canias ERP 8.03. Esto afecta una función desconocida del componente Interfaz RMI de inicio de sesión. La manipulación del argumento clientVersion conduce a una autenticación impropia. Es posible iniciar el ataque de forma remota. El exploit está disponible públicamente y podría ser utilizado. Se contactó al proveedor con antelación sobre esta divulgación, pero no respondió de ninguna manera.

18 May 2026, 15:16

Type Values Removed Values Added
References
  • () https://hawktrace.com/blog/caniaserp -

10 May 2026, 10:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-10 10:16

Updated : 2026-07-24 07:10


NVD link : CVE-2026-8244

Mitre link : CVE-2026-8244

CVE.ORG link : CVE-2026-8244


JSON object : View

Products Affected

No product.

CWE
CWE-287

Improper Authentication