Loading
Directory traversal vulnerability in the VulCore web service (WSVulnerabilityCore/VulCore.asmx) in Lenovo ThinkManagement Console 9.0.3 allows remote attackers to delete arbitrary files via a .. (dot dot) in the filename parameter in a SetTaskLogByFile SOAP request.
Use CWE-22, Landesk vendor hub and Lenovo Thinkmanagement Console product page to widen CVE-2012-1196 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2012-1195 for nearby disclosures in the same product family.