VendorsMicrochiptimeprovider_4100_firmwareall versions
Vulnerabilities

Microchip Technology

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

12CVEs
CVE-2024-43685
Session token fixation in TimeProvider 4100
Published 2024-10-04 · Analyzed
9.8EPSS 0.004
CVE-2025-9497
Hardcoded Upgrade Decryption Passwords
Published 2026-03-28 · Analyzed
9.8EPSS 0.003
CVE-2025-47900
RCE on backup configuration password
Published 2025-10-20 · Modified
8.9EPSS 0.014
CVE-2025-47901
RCE on restore configuration password
Published 2025-10-20 · Modified
8.9EPSS 0.014
CVE-2024-9054
Remote code Execution inTimeProvider® 4100
Published 2024-10-04 · Analyzed
8.81 PoCEPSS 0.156
CVE-2025-47902
SQL Injection in web resource
Published 2025-10-20 · Modified
8.8EPSS 0.004
CVE-2024-43684
Cross-Site Request Forgery vulnerability in TimeProvider 4100
Published 2024-10-04 · Modified
8.8EPSS 0.002
CVE-2024-43683
Improper verification of the Host header in TimeProvider 4100
Published 2024-10-04 · Modified
8.7EPSS 0.002
CVE-2024-43687
XSS vulnerability in bannerconfig endpoint in TimeProvider 4100
Published 2024-10-04 · Analyzed
7.71 PoCEPSS 0.008
CVE-2024-7801
SQL injection in get_chart_data in TimeProvider 4100
Published 2024-10-04 · Analyzed
6.51 PoCEPSS 0.008
CVE-2024-43686
Reflected XSS in TimeProvider 4100 chart component
Published 2024-10-04 · Analyzed
6.1EPSS 0.130
CVE-2025-47904
Unsigned upgrade package
Published 2026-02-24 · Modified
5.7EPSS 0.001