CVE-2021-44207

8.1HIGH

Acclaim USAHERDS through 7.4.0.1 uses hard-coded credentials.

Published: 12/21/2021Updated: 11/10/2025

CISA Known Exploited Vulnerability

Acclaim Systems USAHERDS contains a hard-coded credentials vulnerability that could allow an attacker to achieve remote code execution on the system that runs the application. The MachineKey must be obtained via a separate vulnerability or other channel.

Required Action:

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable. Please contact the product developer for support and vulnerability mitigation.

Due Date:

2025-01-13

Description

Acclaim USAHERDS through 7.4.0.1 uses hard-coded credentials.

AI AnalysisPowered by AI

Affected Products

acclaimsystemsusaherds

References