Vulnerabilities > CVE-2016-7601 - 7PK - Security Features vulnerability in Apple Iphone OS

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
apple
CWE-254

Summary

An issue was discovered in certain Apple products. iOS before 10.2 is affected. The issue involves the "Local Authentication" component, which does not honor the configured screen-lock time interval if the Touch ID prompt is visible.

Vulnerable Configurations

Part Description Count
OS
Apple
149

Common Weakness Enumeration (CWE)