Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jfx5-r9xc-fw5c

Опубликовано: 21 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

The com.skt.prod.dialer application through 12.5.0 for Android enables any installed application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.skt.prod.dialer.activities.outgoingcall.OutgoingCallInternalBroadcaster component.

The com.skt.prod.dialer application through 12.5.0 for Android enables any installed application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.skt.prod.dialer.activities.outgoingcall.OutgoingCallInternalBroadcaster component.

EPSS

Процентиль: 3%
0.00017
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 5.5
nvd
7 месяцев назад

The com.skt.prod.dialer application through 12.5.0 for Android enables any installed application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.skt.prod.dialer.activities.outgoingcall.OutgoingCallInternalBroadcaster component.

EPSS

Процентиль: 3%
0.00017
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-862