
TL;DR Three remotely exploitable vulnerabilities in IAS Canias ERP 8.03 (CVE-2026-8216 CVSS 7.3, CVE-2026-8215 CVSS 5.3, CVE-2026-8214) allow unauthenticated attackers to bypass authentication and traverse files via Java RMI interfaces. Vendor unresponsive to disclosure.…
Post summary
Three remotely exploitable vulnerabilities in IAS Canias ERP 8.03 allow unauthenticated authentication bypass and file traversal via Java RMI interfaces; no PoC, exploit tool, patch discussion, or evidence of active exploitation was provided.

