PT-2025-30192 · Callapp · Callapp Caller Id App
Fxizenta
·
Published
2025-07-20
·
Updated
2025-09-15
·
CVE-2025-7889
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
CallApp Caller ID App versions up to 2.0.4
Description
A vulnerability exists in CallApp Caller ID App on Android devices. The issue involves improper export of android application components due to manipulation of an unknown function within the
AndroidManifest.xml file of the caller.id.phone.number.block component. This can be exploited on the local host. The exploit has been publicly disclosed, and the vendor was notified but did not respond.Recommendations
CallApp Caller ID App versions prior to 2.0.4 should be updated.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Callapp Caller Id App