Vulnerability Details CVE-2016-4644
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a downgrade issue existed with HTTP authentication credentials saved in Keychain. This issue was addressed by storing the authentication types with the credentials.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 63.0%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 4.0
Products affected by CVE-2016-4644
-
cpe:2.3:a:apple:apple_tv:1.0.0
-
cpe:2.3:a:apple:apple_tv:1.1.0
-
cpe:2.3:a:apple:apple_tv:2.0.0
-
cpe:2.3:a:apple:apple_tv:2.0.1
-
cpe:2.3:a:apple:apple_tv:2.0.2
-
cpe:2.3:a:apple:apple_tv:2.1.0
-
cpe:2.3:a:apple:apple_tv:2.2.0
-
cpe:2.3:a:apple:apple_tv:2.3.0
-
cpe:2.3:a:apple:apple_tv:2.3.1
-
cpe:2.3:a:apple:apple_tv:2.4.0
-
cpe:2.3:a:apple:apple_tv:3.0.0
-
cpe:2.3:a:apple:apple_tv:3.0.1
-
cpe:2.3:a:apple:apple_tv:3.0.2
-
cpe:2.3:a:apple:apple_tv:4.1.0
-
cpe:2.3:a:apple:apple_tv:4.1.1
-
cpe:2.3:a:apple:apple_tv:4.2.0
-
cpe:2.3:a:apple:apple_tv:4.2.1
-
cpe:2.3:a:apple:apple_tv:4.2.2
-
cpe:2.3:a:apple:apple_tv:4.3.0
-
cpe:2.3:a:apple:apple_tv:4.4.0
-
cpe:2.3:a:apple:apple_tv:4.4.2
-
cpe:2.3:a:apple:apple_tv:4.4.3
-
cpe:2.3:a:apple:apple_tv:4.4.4
-
cpe:2.3:a:apple:apple_tv:5.0.0
-
cpe:2.3:a:apple:apple_tv:5.0.1
-
cpe:2.3:a:apple:apple_tv:5.0.2
-
cpe:2.3:a:apple:apple_tv:5.1.0
-
cpe:2.3:a:apple:apple_tv:5.1.1
-
cpe:2.3:a:apple:apple_tv:5.2.0
-
cpe:2.3:a:apple:apple_tv:6.0
-
cpe:2.3:a:apple:apple_tv:6.0.1
-
cpe:2.3:a:apple:apple_tv:6.0.2
-
cpe:2.3:a:apple:apple_tv:6.1
-
cpe:2.3:a:apple:apple_tv:6.1.1
-
cpe:2.3:a:apple:apple_tv:6.1.2
-
cpe:2.3:a:apple:apple_tv:6.2
-
cpe:2.3:a:apple:apple_tv:6.2.1
-
cpe:2.3:a:apple:apple_tv:7.0
-
cpe:2.3:a:apple:apple_tv:7.0.1
-
cpe:2.3:a:apple:apple_tv:7.0.3
-
cpe:2.3:a:apple:apple_tv:7.1
-
cpe:2.3:a:apple:apple_tv:9.0.1
-
cpe:2.3:a:apple:apple_tv:9.1.1
-
cpe:2.3:o:apple:iphone_os:-
-
cpe:2.3:o:apple:iphone_os:1.0.0
-
cpe:2.3:o:apple:iphone_os:1.0.1
-
cpe:2.3:o:apple:iphone_os:1.0.2
-
cpe:2.3:o:apple:iphone_os:1.1.0
-
cpe:2.3:o:apple:iphone_os:1.1.1
-
cpe:2.3:o:apple:iphone_os:1.1.2
-
cpe:2.3:o:apple:iphone_os:1.1.3
-
cpe:2.3:o:apple:iphone_os:1.1.4
-
cpe:2.3:o:apple:iphone_os:1.1.5
-
cpe:2.3:o:apple:iphone_os:2.0
-
cpe:2.3:o:apple:iphone_os:2.0.0
-
cpe:2.3:o:apple:iphone_os:2.0.1
-
cpe:2.3:o:apple:iphone_os:2.0.2
-
cpe:2.3:o:apple:iphone_os:2.1
-
cpe:2.3:o:apple:iphone_os:2.1.1
-
cpe:2.3:o:apple:iphone_os:2.2
-
cpe:2.3:o:apple:iphone_os:2.2.1
-
cpe:2.3:o:apple:iphone_os:3.0
-
cpe:2.3:o:apple:iphone_os:3.0.1
-
cpe:2.3:o:apple:iphone_os:3.1
-
cpe:2.3:o:apple:iphone_os:3.1.1
-
cpe:2.3:o:apple:iphone_os:3.1.2
-
cpe:2.3:o:apple:iphone_os:3.1.3
-
cpe:2.3:o:apple:iphone_os:3.2
-
cpe:2.3:o:apple:iphone_os:3.2.1
-
cpe:2.3:o:apple:iphone_os:3.2.2
-
cpe:2.3:o:apple:iphone_os:4.0
-
cpe:2.3:o:apple:iphone_os:4.0.1
-
cpe:2.3:o:apple:iphone_os:4.0.2
-
cpe:2.3:o:apple:iphone_os:4.1
-
cpe:2.3:o:apple:iphone_os:4.2
-
cpe:2.3:o:apple:iphone_os:4.2.1
-
cpe:2.3:o:apple:iphone_os:4.2.10
-
cpe:2.3:o:apple:iphone_os:4.2.5
-
cpe:2.3:o:apple:iphone_os:4.2.6
-
cpe:2.3:o:apple:iphone_os:4.2.7
-
cpe:2.3:o:apple:iphone_os:4.2.8
-
cpe:2.3:o:apple:iphone_os:4.2.9
-
cpe:2.3:o:apple:iphone_os:4.3.0
-
cpe:2.3:o:apple:iphone_os:4.3.1
-
cpe:2.3:o:apple:iphone_os:4.3.2
-
cpe:2.3:o:apple:iphone_os:4.3.3
-
cpe:2.3:o:apple:iphone_os:4.3.4
-
cpe:2.3:o:apple:iphone_os:4.3.5
-
cpe:2.3:o:apple:iphone_os:5.0
-
cpe:2.3:o:apple:iphone_os:5.0.1
-
cpe:2.3:o:apple:iphone_os:5.1
-
cpe:2.3:o:apple:iphone_os:5.1.1
-
cpe:2.3:o:apple:iphone_os:6.0
-
cpe:2.3:o:apple:iphone_os:6.0.1
-
cpe:2.3:o:apple:iphone_os:6.0.2
-
cpe:2.3:o:apple:iphone_os:6.1
-
cpe:2.3:o:apple:iphone_os:6.1.2
-
cpe:2.3:o:apple:iphone_os:6.1.3
-
cpe:2.3:o:apple:iphone_os:6.1.4
-
cpe:2.3:o:apple:iphone_os:6.1.5
-
cpe:2.3:o:apple:iphone_os:6.1.6
-
cpe:2.3:o:apple:iphone_os:7.0
-
cpe:2.3:o:apple:iphone_os:7.0.1
-
cpe:2.3:o:apple:iphone_os:7.0.2
-
cpe:2.3:o:apple:iphone_os:7.0.3
-
cpe:2.3:o:apple:iphone_os:7.0.4
-
cpe:2.3:o:apple:iphone_os:7.0.5
-
cpe:2.3:o:apple:iphone_os:7.0.6
-
cpe:2.3:o:apple:iphone_os:7.1
-
cpe:2.3:o:apple:iphone_os:7.1.1
-
cpe:2.3:o:apple:iphone_os:7.1.2
-
cpe:2.3:o:apple:iphone_os:8.0
-
cpe:2.3:o:apple:iphone_os:8.0.1
-
cpe:2.3:o:apple:iphone_os:8.0.2
-
cpe:2.3:o:apple:iphone_os:8.1
-
cpe:2.3:o:apple:iphone_os:8.1.1
-
cpe:2.3:o:apple:iphone_os:8.1.2
-
cpe:2.3:o:apple:iphone_os:8.1.3
-
cpe:2.3:o:apple:iphone_os:8.2
-
cpe:2.3:o:apple:iphone_os:8.3
-
cpe:2.3:o:apple:iphone_os:8.4
-
cpe:2.3:o:apple:iphone_os:8.4.1
-
cpe:2.3:o:apple:iphone_os:9.0
-
cpe:2.3:o:apple:iphone_os:9.0.1
-
cpe:2.3:o:apple:iphone_os:9.0.2
-
cpe:2.3:o:apple:iphone_os:9.1
-
cpe:2.3:o:apple:iphone_os:9.2
-
cpe:2.3:o:apple:iphone_os:9.2.1
-
cpe:2.3:o:apple:iphone_os:9.3
-
cpe:2.3:o:apple:iphone_os:9.3.1
-
cpe:2.3:o:apple:iphone_os:9.3.2
-