CVE-2016-5109Improper Access Control in Citrix Worx Home

Severity
4.3MEDIUMNVD
EPSS
0.1%
top 81.91%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 13
Latest updateMay 17

Description

Citrix Worx Home for iOS before 10.3.6 and XenMobile MDX Toolkit for iOS before 10.3.6 might allow physically proximate attackers to bypass in-application Apple Touch ID authentication via unspecified vectors, related to an application requiring re-authentication.

CVSS vector

CVSS:3.0/AV:P/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:NExploitability: 0.7 | Impact: 3.6

Affected Packages9 packages

NVDcitrix/worx_home10.3.0, 10.3.1, 10.3.5+2
NVDcitrix/xenmobile_mdx_toolkit10.3.0, 10.3.5+1

🔴Vulnerability Details

1
GHSA
GHSA-vf7x-6ghf-p328: Citrix Worx Home for iOS before 102022-05-17

📋Vendor Advisories

2
Citrix
CVE-2016-5109: Citrix Worx Home for iOS before 10.3.6 and XenMobile MDX Toolkit for iOS before 10.3.6 might allow physically proximate attackers to bypass in-applica2016-07-13
Citrix
Citrix Security Bulletin CTX214006