8.4
CVSSv3

CVE-2016-0847

Published: 18/04/2016 Updated: 21/04/2016
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 8.4 | Impact Score: 5.9 | Exploitability Score: 2.5
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Telecom Component in Android 5.0.x prior to 5.0.2, 5.1.x prior to 5.1.1, and 6.x prior to 2016-04-01 allows malicious users to spoof the originating telephone number of a call via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 26864502.

Vulnerable Product Search on Vulmon Subscribe to Product

google android 6.0.1

google android 5.1.0

google android 5.1

google android 5.0.1

google android 5.0

google android 6.0

Github Repositories

This is a simple app that exploits CVE-2016-0847 to spoof a call