Microchip Gridtime 3000 Firmware — known CVE vulnerabilities
Every CVE whose affected-product data names Microchip Gridtime 3000 Firmware, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (4)
CVE-2026-12620 — CVSS 6.5 (medium): The GridTime 3000 GNSS Time Server leaks the access token in the URL parameters of some endpoints. This issue affects GridTime 3000: from…
CVE-2026-12619 — CVSS 5.4 (medium): Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Microchip GridTime 3000 allows…
CVE-2026-12621 — CVSS 5.4 (medium): Improper neutralization of input during web page generation XSS vulnerability in the GridTime 3000 (password reset form) allows XSS. This…
CVE-2026-12622 — CVSS 5.4 (medium): The GridTime 3000 GNSS Time Server has an open redirect vulnerability in the password change form submission. This issue affects GridTime…