You don’t need any input from the user/target. Once the malicious code reaches the device the exploit works its magic.
A lot of dragons lurking in the dark there.
Wonder what's blocking the client side. Power efficiency? No target market since cheap LTE sticks can be had for under 20€ apiece?