Описание
The com.enflick.android.tn2ndLine application through 24.17.1.0 for Android enables any installed application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.enflick.android.TextNow.activities.DialerActivity component.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:textnow:2ndline:24.17.1.0:*:*:*:*:android:*:*
EPSS
Процентиль: 4%
0.00018
Низкий
5.5 Medium
CVSS3
4.3 Medium
CVSS3
Дефекты
CWE-862
Связанные уязвимости
CVSS3: 4.3
github
7 месяцев назад
The com.enflick.android.tn2ndLine application through 24.17.1.0 for Android enables any installed application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.enflick.android.TextNow.activities.DialerActivity component.
EPSS
Процентиль: 4%
0.00018
Низкий
5.5 Medium
CVSS3
4.3 Medium
CVSS3
Дефекты
CWE-862