PT-2024-22637 · Microsoft · Xbox Gaming Services

Filip Dragović

·

Published

2024-03-20

·

Updated

2025-09-09

·

CVE-2024-28916

CVSS v3.1

8.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Xbox Gaming Services (affected versions not specified)
Description The issue concerns an elevation of privilege vulnerability in Xbox Gaming Services, allowing for the gain of SYSTEM privileges. There have been public disclosures and discussions about this issue, with Microsoft initially stating it was not a security issue before later patching the vulnerability.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Link Following

Weakness Enumeration

Related Identifiers

CVE-2024-28916

Affected Products

Xbox Gaming Services