CVE-2026-21427
Last modified
CVE-2026-21427 is a high-severity vulnerability rated 8.5/10 on the CVSS scale. The installers for multiple products provided by PIONEER CORPORATION contain an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries. As a result, arbitrary code may be executed with the privileges of the running installer.. EPSS estimates a 0.18% chance of exploitation in the next 30 days.
Description
The installers for multiple products provided by PIONEER CORPORATION contain an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries. As a result, arbitrary code may be executed with the privileges of the running installer.
Metrics
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-21427?
How severe is CVE-2026-21427?
How do I fix CVE-2026-21427?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-21421Dell PowerScale OneFS, versions prior to 9.10.1.6 and versio…6.7
- CVE-2026-21422Dell PowerScale OneFS, versions 9.10.0.0 through 9.13.1.0, c…6.7
- CVE-2026-21423Dell PowerScale OneFS, versions prior to 9.10.1.6 and versio…6.7
- CVE-2026-21424Dell PowerScale OneFS, versions prior to 9.10.1.6 and versio…6.7
- CVE-2026-21425Dell PowerScale OneFS, versions prior to 9.10.1.6 and versio…7.8
- CVE-2026-21426Dell PowerScale OneFS, versions prior to 9.10.1.6 and versio…6.7
- CVE-2026-21428cpp-httplib is a C++11 single-file header-only cross platfor…7.5
- CVE-2026-21429Emlog is an open source website building system. In version …4.3
- CVE-2026-2143A security vulnerability has been detected in D-Link DIR-823…7.3
- CVE-2026-21430Emlog is an open source website building system. In version …9.3
- CVE-2026-21431Emlog is an open source website building system. Version 2.5…5.4
- CVE-2026-21432Emlog is an open source website building system. Version 2.5…5.4
Are you affected by CVE-2026-21427?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
