← All Advisories

CVE-2024-14033

Last refreshed2026-10-06

Status: UPDATED  |  Advisory ID: CVE-2024-14033

Key Details

CVECVE-2024-14033
CVSS Score / Version7.5 (High) / CVSS v3.1
Updated2026-07-24
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS Proseattack vector is network; attack complexity is low; privileges required is none; user interaction is none; scope is unchanged; confidentiality impact is none; integrity impact is none; availability impact is high.
Affected productsBelden Hirschmann EagleSDV
Classified asCWE-400 (Uncontrolled Resource Consumption)

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
BeldenHirschmann EagleSDV
SubsystemsGeneral OT
SectorsMultiple

What to Know

Hirschmann EagleSDV firmware prior to 05.4.02 contains a denial-of-service vulnerability in TLS session establishment. Attackers can crash the device during TLS handshake by exploiting protocol downgrades to TLS 1.0 or TLS 1.1, interrupting service availability. (NVD)

What to Do

Monitor Belden's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2024-14033
CVEhttps://www.cve.org/CVERecord?id=CVE-2024-14033