CVE-2023-42469: Fulldive Full Dialer

Low severity, CVSS 3.3. EPSS: 0.3% chance of exploitation in the next 30 days.

The com.full.dialer.top.secure.encrypted application through 1.0.1 for Android enables any installed application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.full.dialer.top.secure.encrypted.activities.DialerActivity component.

Affected products

  • Fulldive Full Dialer: version 1.0.1 only

Published 2023-09-13. Last modified 2026-06-17.