2024-05-25 21:48:12 +02:00
### [CVE-2023-42469](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-42469)



### Description
The com.full.dialer.top.secure.encrypted application through 1.0.1 for Android enables any installed application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.full.dialer.top.secure.encrypted.activities.DialerActivity component.
### POC
#### Reference
- https://github.com/actuator/com.full.dialer.top.secure.encrypted
- https://github.com/actuator/com.full.dialer.top.secure.encrypted/blob/main/dial.gif
- https://github.com/actuator/com.full.dialer.top.secure.encrypted/blob/main/poc.apk
- https://github.com/actuator/cve/blob/main/CVE-2023-42469
#### Github
2024-06-22 09:37:59 +00:00
- https://github.com/actuator/com.full.dialer.top.secure.encrypted
2024-05-25 21:48:12 +02:00
- https://github.com/actuator/cve
- https://github.com/nomi-sec/PoC-in-GitHub