CVE-2026-8243
Hard-Coded Cryptographic Key in IAS Canias ERP 8.03
Publication date: 2026-05-10
Last updated on: 2026-05-10
Assigner: VulDB
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| industrial_application_software | ias_canias_erp | 8.03 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-320 | Key Management Errors |
| CWE-321 | The product uses a hard-coded, unchangeable cryptographic key. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability exists in the Industrial Application Software IAS Canias ERP version 8.03, specifically in an unknown function of the JNLP Deployment Endpoint component.
The issue involves the use of a hard-coded cryptographic key, which can be exploited remotely by an attacker through manipulation.
How can this vulnerability impact me? :
Exploitation of this vulnerability could allow an attacker to use a hard-coded cryptographic key, potentially compromising the security of encrypted communications or data within the affected software.
Since the attack can be performed remotely without any privileges or user interaction, it increases the risk of unauthorized access or data exposure.