CVE-2024-14033Disclosure

LOWCVSS 8.7 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Hirschmann EagleSDV firmware prior to 05.4.02 contains a denial-of-service vulnerability in TLS session establishment. Attackers can crash the device during TLS handshake by exploiting protocol downgrades to TLS 1.0 or TLS 1.1, interrupting service availability.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-400

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • Peaked 1d ago at 1 mentions (2026-04-02); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-04-02: 1Mentions · 2026-04-03: 1Technical Details · 2026-04-02: 1Technical Details · 2026-04-03: 104-0204-03
Signal classification1 categories
Disclosure
2100.0%
Referenced assets2 URLs
Full discourse2 posts
  • CVE@CVEnew
    Disclosure

    CVE-2024-14033 Hirschmann Industrial IT products (BAT-R, BAT-F, BAT450-F, BAT867-R, BAT867-F, WLC, BAT Controller Virtual) contain a heap overflow vulnerability in the HiLCOS web in… https://www.cve.org/CVERecord?id=CVE-2024-14033

    Post summary

    New CVE-2024-14033 disclosed as a heap overflow vulnerability in the HiLCOS web interface of Hirschmann Industrial IT products.

    00000114
    56.9K followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2024-14033: HIGH] Hirschmann Industrial IT products have a heap overflow vulnerability in the HiLCOS web interface, allowing remote attackers to trigger a denial-of-service condition.#cve,CVE-2024-14033,#cybersecurity https://cvefind.com/CVE-2024-14033

    Post summary

    The text announces a HIGH severity heap‑overflow CVE (CVE‑2024‑14033) affecting Hirschmann Industrial IT products, noting it enables remote denial-of-service via the HiLCOS web interface.

    0000066
    617 followersView on X

Explore more