CISA Flags CVE-2021-44207 in Exploited Vulnerabilities Catalog: High Impact Alert
ID: 9c1fb96f-9409-518a-9451-b5c564d4754d
STIX ID: report--9c1fb96f-9409-518a-9451-b5c564d4754d
Feed Name: The Cyber Express
CISA added CVE-2021-44207—an Acclaim Systems USAHERDS vulnerability caused by hard-coded ValidationKey and DecryptionKey values (CWE-798) that can allow remote code execution if the static keys are obtained—to its Known Exploited Vulnerabilities Catalog after evidence of active exploitation; the advisory explains impact, limited exploitability (requires obtaining the keys via another vector), recommended vendor mitigations or discontinuation, and urges remediation under BOD 22-01.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
