← Back

CVE-2016-5237

nvd nist
Published: Jan 23, 2017Modified: May 13, 2026

JSON object

Loading...
4.8
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L
Exploitability: 1.3 / Impact: 3.4
Source: NVD

Description

Valve Steam 3.42.16.13 uses weak permissions for the files in the Steam program directory, which allows local users to modify the files and possibly gain privileges as demonstrated by a Trojan horse Steam.exe file.

Affected (1)

1 product
Steamos
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 3.42.16.13

Related CWEs

References (4)

Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.