Skip to content
Noroxi

Microchip records

56 published records for vendor microchip.

All records

56 records
  • CVE-2022-40022
    67This week

    Microchip Technology (Microsemi) SyncServer S650 was discovered to contain a command injection vulnerability.

    CriticalCVSS 9.8WeaponizedEPSS 92%

    microchip · syncserver s650 firmwareFeb 13, 2023

  • Multiple buffer overflows in Microchip MPLAB IDE 8.30 and possibly earlier versions allow user-assisted remote attackers to execute arbitrar

    CriticalCVSS 9.3Proof of conceptEPSS 11%

    microchip · mplab ideMay 11, 2009

  • In default installations of Microchip maxView Storage Manager (for Adaptec Smart Storage Controllers) where Redfish server is configured for

    CriticalCVSS 10.0No exploitEPSS 1%

    microchip · maxview storage managerJan 8, 2024

  • CVE-2024-9054
    39Monitor

    Remote code Execution inTimeProvider® 4100

    HighCVSS 8.5Proof of conceptEPSS 16%

    microchip · timeprovider 4100 firmwareOct 4, 2024

  • A vulnerability has been identified in SIMATIC IPC1047E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows), SIMATIC IPC

    CriticalCVSS 9.8No exploitEPSS 1%

    microchip · maxview storage managerJan 9, 2024

  • An issue was discovered in picoTCP 1.7.0.

    CriticalCVSS 9.1No exploitEPSS 7%

    altran · picotcpDec 11, 2020

  • CVE-2009-1674
    38Monitor

    Stack-based buffer overflow in Microchip MPLAB IDE 8.30 allows user-assisted remote attackers to execute arbitrary code via a long .cof path

    CriticalCVSS 9.3Proof of conceptEPSS 5%

    microchip · mplab ideMay 18, 2009

  • CVE-2024-7490
    38Monitor

    Remote Code Execution in Advanced Software Framework DHCP server

    CriticalCVSS 9.5No exploitEPSS 1%

    microchip · advanced software frameworkAug 8, 2024

  • Atmel Advanced Software Framework (ASF) 4 has an Integer Overflow.

    CriticalCVSS 9.1No exploitEPSS 2%

    microchip · advanced software framework 4Oct 22, 2020

  • CVE-2026-2844
    37Monitor

    TimePictra Authentication Bypass Vulnerability

    CriticalCVSS 9.3No exploitEPSS 0%

    microchip · timepictraFeb 28, 2026

  • CVE-2026-3010
    37Monitor

    TimePictra Stored Cross-Site Scripting

    CriticalCVSS 9.3No exploitEPSS 0%

    microchip · timepictraFeb 28, 2026

  • In Microchip MPLAB Net 3.6.1, TCP ISNs are improperly random.

    CriticalCVSS 9.1No exploitEPSS 1%

    microchip · mplab network creatorOct 10, 2023

  • RCE on backup configuration password

    HighCVSS 8.9No exploitEPSS 1%

    microchip · timeprovider 4100 firmwareOct 20, 2025

  • RCE on restore configuration password

    HighCVSS 8.9No exploitEPSS 1%

    microchip · timeprovider 4100 firmwareOct 20, 2025

  • The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) mishandles reject messages.

    HighCVSS 8.6No exploitEPSS 1%

    microchip · bm78 firmwareDec 19, 2022

  • Session token fixation in TimeProvider 4100

    HighCVSS 8.7No exploitEPSS 0%

    microchip · timeprovider 4100 firmwareOct 4, 2024

  • CVE-2026-2336
    34Monitor

    Weak webstax_auth Cookie Authentication Allows Privilege Escalation

    HighCVSS 8.7No exploitEPSS 0%

    microchip · istaxApr 16, 2026

  • Improper verification of the Host header in TimeProvider 4100

    HighCVSS 8.7No exploitEPSS 0%

    microchip · timeprovider 4100 firmwareOct 4, 2024

  • Cross-Site Request Forgery vulnerability in TimeProvider 4100

    HighCVSS 8.7No exploitEPSS 0%

    microchip · timeprovider 4100 firmwareOct 4, 2024

  • CMAC verification functionality in Microchip Atmel ATSAMA5 products is vulnerable to vulnerable to timing and power analysis attacks.

    HighCVSS 7.5No exploitEPSS 1%

    microchip · atsama5d21c-cu firmwareSep 14, 2020

  • In version 6.5 Microchip MiWi software and all previous versions including legacy products, the stack is validating only two out of four Mes

    HighCVSS 7.5No exploitEPSS 1%

    microchip · miwiAug 5, 2021

  • The Secure Monitor in Microchip Atmel ATSAMA5 products use a hardcoded key to encrypt and authenticate secure applets.

    HighCVSS 7.5No exploitEPSS 1%

    microchip · atsama5d21c-cu firmwareSep 14, 2020

  • Microchip Atmel ATSAMA5 products in Secure Mode allow an attacker to bypass existing security mechanisms related to applet handling.

    HighCVSS 7.5No exploitEPSS 1%

    microchip · atsama5d21c-cu firmwareSep 14, 2020

  • In version 6.5 of Microchip MiWi software and all previous versions including legacy products, there is a possibility of frame counters bein

    HighCVSS 7.5No exploitEPSS 1%

    microchip · miwiAug 5, 2021

  • CVE-2020-9034
    30Monitor

    Symmetricom SyncServer S100 2.90.70.3, S200 1.30, S250 1.25, S300 2.65.0, and S350 2.80.1 devices mishandle session validation, leading to u

    HighCVSS 7.5No exploitEPSS 1%

    microchip · syncserver s100 firmwareFeb 16, 2020