Project Subscriptions
No data.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
Upgrades are only available on a separate management port which should not be connected to an untrusted network. ACLs are available to further restrict access to only trusted addresses.
Sat, 28 Mar 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Use of Hard-coded Credentials vulnerability in Microchip Time Provider 4100 allows Malicious Manual Software Update.This issue affects Time Provider 4100: before 2.5.0. | |
| Title | Hardcoded Upgrade Decryption Passwords | |
| Weaknesses | CWE-798 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Microchip
Published:
Updated: 2026-03-28T10:58:29.620Z
Reserved: 2025-08-26T17:59:09.578Z
Link: CVE-2025-9497
No data.
Status : Received
Published: 2026-03-28T11:16:35.337
Modified: 2026-03-28T11:16:35.337
Link: CVE-2025-9497
No data.
OpenCVE Enrichment
No data.