CISA KEV · Known exploitedHigh

CVE-2021-44207

Acclaim Systems USAHERDS

CVE-2021-44207 affects Acclaim Systems USAHERDS. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

CVSS
8.1
EPSS
17.6%
96.8% percentile
CISA KEV
Listed
Published
2021.12.22
PRIORITY ASSESSMENT

Immediate review

CISA has listed this vulnerability in the Known Exploited Vulnerabilities catalog.

Known exploitationConfirmed by CISA KEV
Exploit probability17.6%
Technical severityCVSS 8.1

Vulnerability overview

CVE-2021-44207 affects Acclaim Systems USAHERDS. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

Affected product and versions

Product
Acclaim Systems USAHERDS
Affected versions
<= 7.4.0.1
Fixed versions
No verified fixed-version field is available yet

Recommended response sequence

Confirm exposure before applying a vendor-supported change.

Full remediation guide
CISA required action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable. Please contact the product developer for support and vulnerability mitigation.

Due date: 2025.01.13
  1. 1
    Identify

    Confirm that Acclaim Systems USAHERDS and an affected version are present.

  2. 2
    Prioritize

    Combine exploitation signals with asset exposure and business criticality.

  3. 3
    Remediate

    Follow the vendor advisory or supported update path and preserve rollback options.

  4. 4
    Verify

    Recheck the version, service health, access paths, and relevant logs.

Technical data

CVSS vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE
CWE-798
KEV added
2024.12.23
Ransomware use
미확인