Pioneer DMH-WT7600NEX Root Filesystem Insufficient Verification of Data Authenticity Vulnerability. This vulnerability allows physically present attackers to bypass authentication on affected installations of Pioneer DMH-WT7600NEX devices. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the configuration of the operating system. The issue results from the lack of properly configured protection for the root file system. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-26077.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.zerodayinitiative.com/advisories/ZDI-25-350/ |
![]() ![]() |
History
Tue, 08 Jul 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Pioneer
Pioneer dmh-wt7600nex Pioneer dmh-wt7600nex Firmware |
|
CPEs | cpe:2.3:h:pioneer:dmh-wt7600nex:-:*:*:*:*:*:*:* cpe:2.3:o:pioneer:dmh-wt7600nex_firmware:3.05:*:*:*:*:*:*:* |
|
Vendors & Products |
Pioneer
Pioneer dmh-wt7600nex Pioneer dmh-wt7600nex Firmware |
|
Metrics |
cvssV3_1
|
Wed, 25 Jun 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 25 Jun 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Pioneer DMH-WT7600NEX Root Filesystem Insufficient Verification of Data Authenticity Vulnerability. This vulnerability allows physically present attackers to bypass authentication on affected installations of Pioneer DMH-WT7600NEX devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the configuration of the operating system. The issue results from the lack of properly configured protection for the root file system. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-26077. | |
Title | Pioneer DMH-WT7600NEX Root Filesystem Insufficient Verification of Data Authenticity Vulnerability | |
Weaknesses | CWE-345 | |
References |
| |
Metrics |
cvssV3_0
|

Status: PUBLISHED
Assigner: zdi
Published: 2025-06-25T17:58:18.809Z
Updated: 2025-06-25T18:23:36.170Z
Reserved: 2025-06-06T19:40:42.518Z
Link: CVE-2025-5833

Updated: 2025-06-25T18:23:28.883Z

Status : Analyzed
Published: 2025-06-25T18:15:24.203
Modified: 2025-07-08T14:52:15.600
Link: CVE-2025-5833

No data.