CVE-2016-5237
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 0.8%
from disclosure to weapon0 days
Published on NVDJan 23
1st PoCJun 6
exploitation probability
0.8%top 48% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
Valve Steam 3.42.16.13 uses weak permissions for the files in the Steam program directory, which allows local users to modify the files and possibly gain privileges as demonstrated by a Trojan horse Steam.exe file.
Affected products
n/a · n/apublic PoCs found — 3
exploitdbwww.exploit-db.com/exploits/39888unverifiedcve_referencepacketstormsecurity.com/files/137343/Valve-Steam-3.42.16.13-Local-Privilege-Escalation.htmlunverifiedcve_referencewww.exploit-db.com/exploits/39888/unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.