TUCoPS :: Windows Net Apps :: offexp2.htm

Offline Explorer serious remote directory traversal vulnerability

    Offline Explorer


    MetaProducts Offline Explorer prior to 1.4 SR2


    'dodger' found following.  The Offline Explorer 1.4 has a  serious
    bug.  It's similar to the fixed bug.

    it is possible to access the harddrive and read all files.


    This bug  is fixed  in the  newest version  (Offline Explorer  1.4
    Service Release 2).

