logo

CISA Flags CVE-2021-44207 in Exploited Vulnerabilities Catalog: High Impact Alert

ID: 9c1fb96f-9409-518a-9451-b5c564d4754d

STIX ID: report--9c1fb96f-9409-518a-9451-b5c564d4754d

Feed Name: The Cyber Express

Threat Score
70/100

Date Published: 2024-12-24

Date Updated: 2026-04-23

Author: Samiksha Jain

...
...

CISA added CVE-2021-44207—an Acclaim Systems USAHERDS vulnerability caused by hard-coded ValidationKey and DecryptionKey values (CWE-798) that can allow remote code execution if the static keys are obtained—to its Known Exploited Vulnerabilities Catalog after evidence of active exploitation; the advisory explains impact, limited exploitability (requires obtaining the keys via another vector), recommended vendor mitigations or discontinuation, and urges remediation under BOD 22-01.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.