High severity7.1NVD Advisory· Published Aug 13, 2026· Updated Aug 24, 2026
CVE-2026-12036
CVE-2026-12036
Description
An improper link following vulnerability was reported in the VantageCoreAddin for Lenovo Vantage and Lenovo Commercial Vantage that could allow a local authenticated user to perform an arbitrary file deletion with elevated privileges.
Affected products
3Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.