Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
Do not expose the web interface on the separate management port to an untrusted network. For added security, users have the option to disable the web interface, further protecting the device from potential web-based exploitations.
Mon, 20 Oct 2025 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 20 Oct 2025 18:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Microchip Time Provider 4100 allows SQL Injection.This issue affects Time Provider 4100: before 2.5. | |
Title | SQL Injection in web resource | |
Weaknesses | CWE-89 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: Microchip
Published:
Updated: 2025-10-20T20:26:20.226Z
Reserved: 2025-05-13T19:24:53.452Z
Link: CVE-2025-47902

Updated: 2025-10-20T20:26:16.067Z

Status : Received
Published: 2025-10-20T18:15:38.727
Modified: 2025-10-20T18:15:38.727
Link: CVE-2025-47902

No data.

No data.