Record summary

CVE-2016-5237 has a selected CVSS score of 4.8 (medium); EIP currently links 1 catalogued exploit.

Description

Valve Steam 3.42.16.13 uses weak permissions for the files in the Steam program directory, which allows local users to modify the files and possibly gain privileges as demonstrated by a Trojan horse Steam.exe file.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBValve Steam 3.42.16.13 - Local Privilege EscalationExploitDB exploitby Gregory SmileyNot analyzed1 file
ExploitDB

PoC details

References

3