CVE-2025-47904: Microchip Timeprovider 4100 Firmware

Medium severity, CVSS 4.1. EPSS: 0.1% chance of exploitation in the next 30 days.

Download of Code Without Integrity Check vulnerability in Microchip Time Provider 4100 allows Malicious Manual Software Update.This issue affects Time Provider 4100: before 2.5.

Affected products

  • Microchip Timeprovider 4100 Firmware: before 2.5 (fixed in 2.5)

Published 2026-02-24. Last modified 2026-06-17.