CVE-2016-7584

EUVD-2016-8434
An issue was discovered in certain Apple products. iOS before 10.1 is affected. macOS before 10.12.1 is affected. tvOS before 10.0.1 is affected. watchOS before 3.1 is affected. The issue involves the "AppleMobileFileIntegrity" component, which allows remote attackers to spoof signed code by using a matching team ID.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
NONE
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 51%
Affected Products (NVD)
VendorProductVersion
appleiphone_os
𝑥
≤ 10.0.3
applemac_os_x
𝑥
≤ 10.12.0
appletvos
𝑥
≤ 10.0
applewatchos
𝑥
≤ 2.2.2
𝑥
= Vulnerable software versions
Common Weakness Enumeration