Path Hijacking Vulnerability in Hirschmann Industrial HiVision Software
CVE-2022-4987

8.4HIGH

Key Information:

Vendor

Belden

Vendor
CVE Published:
3 April 2026

What is CVE-2022-4987?

The Hirschmann Industrial HiVision software versions prior to 08.1.04 and 08.2.00 are susceptible to a vulnerability that enables local attackers to execute arbitrary binaries. This weakness arises from inadequate path sanitization in the execution of user-configured external applications. An attacker could exploit this vulnerability by placing a malicious binary within the execution path of an external application. When triggered, this could lead to the execution of unauthorized code with elevated privileges, contingent upon the privileges of the affected application. Timely updates are essential to mitigate potential threats.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Hirschmann Industrial HiVision 0 <= 08.1.03

Hirschmann Industrial HiVision 0 <= 08.1.03

Hirschmann Industrial HiVision 08.2.00

References

CVSS V4

Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.