CVE-2025-9497
Use of Hard-coded Credentials vulnerability in Microchip Time Provider 4100 allows Malicious Manual Software Update.This issue affects Time Provider 4100: before 2.5.0.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 9.8
- CVSS vector
- CVSS:4.0/AV:L/AC:H/AT:P/PR:H/UI:N/VC:L/VI:H/VA:L/SC:L/SI:H/SA:L/E:P
- EPSS probability
- 0.32%
- CWE
- CWE-798
- Published
- 2026-03-28
- Last modified
- 2026-04-01
Affected products
- Microchip Time Provider 4100
Weakness type
Related vulnerabilities
- CVE-2026-75940 — A vulnerability was reported in Lenovo Health Android Application, distributed exclusively in the...
- CVE-2026-17038 — Use of Hard-coded Credentials in drEryk Gabinet
- CVE-2026-81640 — Softish C6 Ear Camera and EarVision Android Application Use of Hard-coded Credentials
- CVE-2026-79731 — Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to...
- CVE-2026-79950 — Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to...
- CVE-2026-79740 — Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to...
- CVE-2026-79738 — Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to...
- CVE-2026-86464 — In the current development version of Eclipse aeriOS, for which no official release has yet been...