Home/Product/microchip timeprovider 4100 firmware
Product

microchip timeprovider 4100 firmware

11 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-47904
< 2.5
Download of Code Without Integrity Check vulnerability in Microchip Time Provider 4100 allows Malicious Manual Software Update.Thi
4.1MEDIUM
CVE-2025-47902
< 2.5
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Microchip Time Provider 4100
8.8HIGH
CVE-2025-47901
< 2.5
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Microchip Time Provide
8.8HIGH
CVE-2025-47900
< 2.5
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Microchip Time Provide
8.8HIGH
CVE-2024-9054
>= 1.0 and < 2.4.7
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'), Exposure of Sensitive Information to a
8.8HIGH
CVE-2024-7801
>= 1.0 and < 2.4.7
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Microchip TimeProvider 4100
6.5MEDIUM
CVE-2024-43687
>= 1.0 and < 2.4.7
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Microchip TimeProvide
6.1MEDIUM
CVE-2024-43686
>= 1.0 and < 2.4.7
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Microchip TimeProvide
6.1MEDIUM
CVE-2024-43685
>= 1.0 and < 2.4.7
Improper Authentication vulnerability in Microchip TimeProvider 4100 (login modules) allows Session Hijacking.This issue affects T
9.8CRITICAL
CVE-2024-43684
>= 1.0 and < 2.4.7
Cross-Site Request Forgery (CSRF) vulnerability in Microchip TimeProvider 4100 allows Cross Site Request Forgery, Cross-Site Scrip
8.8HIGH
CVE-2024-43683
>= 1.0 and < 2.4.7
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Microchip TimeProvider 4100 allows XSS Through HTTP Headers.T
6.1MEDIUM
threatengine.sh