CVE-2024-14033 HIGH

CVE-2024-14033: Hirschmann EagleSDV Denial of Service via TLS

Vendor Belden
Product Hirschmann EagleSDV
Weakness CWE-400
Published April 2, 2026
Last update May 25, 2026

CVSS base score

7.5/10
Attack vector Network
Attack complexity Low
Privileges required None
User interaction None
Confidentiality None
Integrity None

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

What the vulnerability does

01Description

Hirschmann EagleSDV firmware prior to 05.4.02 contains a denial-of-service vulnerability in TLS session establishment. Attackers can crash the device during TLS handshake by exploiting protocol downgrades to TLS 1.0 or TLS 1.1, interrupting service availability.

Key dates

02Disclosure timeline

April 2, 2026 CVE published
May 25, 2026 Record updated