# CVE-2021-44320

## Summary

- **CVE ID:** CVE-2021-44320
- **Severity:** HIGH
- **CVSS Score:** 7.5 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
- **CWE:** N/A
- **Published:** Sep 4, 2026
- **Last Modified:** Sep 4, 2026

## Description

Parrot AR.Drone version 1 and 2 does not employ a suitable mechanism to prevent denial-of-service (DoS) attacks. An attacker can harm the device availability (i.e., video streaming and control) by using tool to perform an IPv4 flood attack. Verified attacks includes SYN flooding and UDP flooding.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](https://www.researchgate.net/publication/313177418_The_Impact_of_DoS_Attacks_on_the_ARDrone_20)
- [CNA](https://www.researchgate.net/publication/257681090_ARDrone_corruption)
- [CNA](https://github.com/gubertoli/cve/tree/main/CVE-2021-44320)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.43%
- **EPSS Percentile:** 36.7

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-17._