CVE-2007-1220
UnknownEPSS 1.42%
Last modified
CVE-2007-1220 is a vulnerability of currently unknown severity. The Hypervisor in Microsoft Xbox 360 kernel 4532 and 4548 does not properly verify the parameters passed to the syscall dispatcher, which allows attackers with physical access to bypass code-signing requirements and execute arbitrary code.. EPSS estimates a 1.42% chance of exploitation in the next 30 days.
Description
The Hypervisor in Microsoft Xbox 360 kernel 4532 and 4548 does not properly verify the parameters passed to the syscall dispatcher, which allows attackers with physical access to bypass code-signing requirements and execute arbitrary code.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Xbox 360 | 4532 |
| Microsoft | Xbox 360 | 4548 |
References
- http://www.securityfocus.com/bid/22745Vendor Advisory
- http://www.securityfocus.com/bid/22745Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-1220?
The Hypervisor in Microsoft Xbox 360 kernel 4532 and 4548 does not properly verify the parameters passed to the syscall dispatcher, which allows attackers with physical access to bypass code-signing requirements and execute arbitrary code.
How severe is CVE-2007-1220?
Severity scoring for CVE-2007-1220 is pending analysis. The EPSS model estimates a 1.42% probability of exploitation in the next 30 days.
How do I fix CVE-2007-1220?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2007
- CVE-2007-1214Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2003 Viewer, a…
- CVE-2007-1215Buffer overflow in the Graphics Device Interface (GDI) in Mi…
- CVE-2007-1216Double free vulnerability in the GSS-API library (lib/gssapi…
- CVE-2007-1217Buffer overflow in the bufprint function in capiutil.c in li…
- CVE-2007-1218Off-by-one buffer overflow in the parse_elements function in…
- CVE-2007-1219PHP remote file inclusion vulnerability in actions/del.php i…
- CVE-2007-1221The Hypervisor in Microsoft Xbox 360 kernel 4532 and 4548 al…
- CVE-2007-1222Parallels Desktop for Mac before 20070216 implements Drag an…
- CVE-2007-1223Unspecified vulnerability in Hitachi OSAS/FT/W before 200702…
- CVE-2007-1224Grok Developments NetProxy 4.03 allows remote attackers to b…
- CVE-2007-1225The connection log file implementation in Grok Developments …
- CVE-2007-1226McAfee VirusScan for Mac (Virex) before 7.7 patch 1 has weak…
Are you affected by CVE-2007-1220?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
