PT-2026-39427 · Industrial Application Software Ias · Canias Erp

B1Lal

·

Published

2026-05-10

·

Updated

2026-05-10

·

CVE-2026-8214

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
A vulnerability was found in Industrial Application Software IAS Canias ERP 8.03. This affects the function doAction of the component RMI Interface. The manipulation of the argument sessionId results in improper authentication. It is possible to launch the attack remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

Exploit

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2026-8214

Affected Products

Canias Erp