PoC Index

CVE-2023-42469

LOW 3.3EPSS 0.3%

The com.full.dialer.top.secure.encrypted application through 1.0.1 for Android enables any installed application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.full.dialer.top.secure.encrypted.activities.DialerActivity component.

CVSS v3.1
3.3 LOWCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
EPSS
0.31% chance of exploitation in the next 30 days, 23th percentile
Published
2023-09-13
Updated
2024-09-25

Proof-of-concept exploits (1)

References

Related