Android Phone Call Screen App Vulnerability Affects Asian Mobile
CVE-2024-53936
6.3MEDIUM
What is CVE-2024-53936?
The Color Phone Call Screen App for Android contains a vulnerability that allows unauthorized applications to initiate phone calls without user consent. By exploiting improper handling of intents through the com.asianmobile.callcolor.ui.component.call.CallActivity component, an attacker can send a crafted intent to make calls without requiring any permissions. This could lead to unexpected calls being made, posing a significant risk to user privacy and security.
