nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2016-5237 CVE-2016-5237
MEDIUM
Valve Steam 3.42.16.13 - Local Privilege Escalation
Record summary
CVE-2016-5237 has a selected CVSS score of 4.8 (medium); EIP currently links 1 catalogued exploit.
Description
Valve Steam 3.42.16.13 uses weak permissions for the files in the Steam program directory, which allows local users to modify the files and possibly gain privileges as demonstrated by a Trojan horse Steam.exe file.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBValve Steam 3.42.16.13 - Local Privilege EscalationExploitDB exploitby Gregory SmileyNot analyzed1 file
References
3packetstormsecurity.com
https://packetstormsecurity.com/files/137343/Valve-Steam-3.42.16.13-Local-Privilege-Escalation.html 39888exploit
https://www.exploit-db.com/exploits/39888