Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sat, 18 Apr 2026 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Insecure DLL Search Path in Pioneer Installers Allows Arbitrary Code Execution |
Thu, 08 Jan 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 08 Jan 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Pioneer
Pioneer stellanova Lite Aps-s201jgl Pioneer stellanova Lite Aps-s201jgr Pioneer stellanova Lite Aps-s201jr Pioneer stellanova Lite Aps-s201js Pioneer stelllanova Aps-s301 Series Pioneer stelllanova Limited Aps-s202j-lm Pioneer usb Dac Amplifier Aps-da101jgl Pioneer usb Dac Amplifier Aps-da101jgr Pioneer usb Dac Amplifier Aps-da101jr Pioneer usb Dac Amplifier Aps-da101js |
|
| Vendors & Products |
Pioneer
Pioneer stellanova Lite Aps-s201jgl Pioneer stellanova Lite Aps-s201jgr Pioneer stellanova Lite Aps-s201jr Pioneer stellanova Lite Aps-s201js Pioneer stelllanova Aps-s301 Series Pioneer stelllanova Limited Aps-s202j-lm Pioneer usb Dac Amplifier Aps-da101jgl Pioneer usb Dac Amplifier Aps-da101jgr Pioneer usb Dac Amplifier Aps-da101jr Pioneer usb Dac Amplifier Aps-da101js |
Thu, 08 Jan 2026 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The installers for multiple products provided by PIONEER CORPORATION contain an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries. As a result, arbitrary code may be executed with the privileges of the running installer. | |
| Weaknesses | CWE-427 | |
| References |
| |
| Metrics |
cvssV3_0
|
Subscriptions
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2026-01-22T07:03:11.927Z
Reserved: 2025-12-25T00:23:40.578Z
Link: CVE-2026-21427
Updated: 2026-01-08T15:52:53.638Z
Status : Deferred
Published: 2026-01-08T04:15:56.690
Modified: 2026-04-15T00:35:42.020
Link: CVE-2026-21427
No data.
OpenCVE Enrichment
Updated: 2026-04-18T08:00:05Z