← All Advisories

CVE-2022-4986

Last refreshed2026-10-06

Status: UPDATED  |  Advisory ID: CVE-2022-4986

Key Details

CVECVE-2022-4986
CVSS Score / Version7.5 (High) / CVSS v3.1
Updated2026-07-24
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS Proseattack vector is network; attack complexity is low; privileges required is none; user interaction is none; scope is unchanged; confidentiality impact is none; integrity impact is none; availability impact is high.
Affected productsBelden Hirschmann EagleSDV and beldan eaglesdv_firmware
Classified asCWE-400 (Uncontrolled Resource Consumption)

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
BeldenHirschmann EagleSDV
beldaneaglesdv_firmware
SubsystemsGeneral OT
SectorsMultiple

What to Know

Hirschmann EagleSDV version 05.4.01 prior to 05.4.02 contains a denial-of-service vulnerability that causes the device to crash during session establishment when using TLS 1.0 or TLS 1.1. Attackers can trigger a crash by initiating TLS connections with these protocol versions to disrupt service availability. (NVD)

What to Do

Monitor Belden's and beldan's web pages for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2022-4986
CVEhttps://www.cve.org/CVERecord?id=CVE-2022-4986