📦 Timeprovider 4100 Firmware

by Microchip

🔍 What is Timeprovider 4100 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-43685

CRITICAL CVSS 9.8 Oct 4, 2024

CVE-2024-43685 is an improper authentication vulnerability in Microchip TimeProvider 4100 login modules that allows session hijacking through token fixation. Attackers can steal or manipulate session ...

CVE-2025-47901

HIGH CVSS 8.8 Oct 20, 2025

This CVE describes an OS command injection vulnerability in Microchip Time Provider 4100 devices that allows attackers to execute arbitrary operating system commands. The vulnerability affects all Tim...

CVE-2024-9054

HIGH CVSS 8.8 Oct 4, 2024

This vulnerability allows remote attackers to execute arbitrary operating system commands on Microchip TimeProvider 4100 devices through improper input sanitization in configuration modules. Attackers...

CVE-2024-43684

HIGH CVSS 8.8 Oct 4, 2024

A Cross-Site Request Forgery (CSRF) vulnerability in Microchip TimeProvider 4100 allows attackers to trick authenticated users into performing unintended actions. Combined with Cross-Site Scripting (X...

CVE-2025-47904

MEDIUM CVSS 4.1 Feb 24, 2026

Microchip Time Provider 4100 devices before version 2.5 allow attackers to upload malicious firmware updates without cryptographic verification. This affects organizations using these time synchroniza...

CVE-2024-43687

MEDIUM CVSS 6.1 Oct 4, 2024

This is a stored cross-site scripting (XSS) vulnerability in Microchip TimeProvider 4100 banner configuration modules. Attackers can inject malicious scripts that execute when users view the banner, p...

CVE-2024-7801

MEDIUM CVSS 6.5 Oct 4, 2024

This SQL injection vulnerability in Microchip TimeProvider 4100's data plot modules allows attackers to execute arbitrary SQL commands on the database. It affects TimeProvider 4100 devices running ver...