CVE-2021-44207

HIGH KEV

Acclaim USAHERDS <= 7.4.0.1 - Use of Hard-coded Credentials

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2021-44207 is actively exploited and listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, added December 23, 2024.

Description

Acclaim USAHERDS through 7.4.0.1 uses hard-coded credentials.

Scores

CVSS v3 8.1
EPSS 0.0892
EPSS Percentile 92.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation active
Automatable no
Technical Impact total

Details

CISA KEV 2024-12-23
VulnCheck KEV 2022-03-08
InTheWild.io 2024-12-23
ENISA EUVD EUVD-2021-31057
CWE
CWE-798
Status published
Products (1)
acclaimsystems/usaherds < 7.4.0.1
Published Dec 21, 2021
KEV Added Dec 23, 2024
Tracked Since Feb 18, 2026