by Tan Chew Keong
Release Date: 2008-06-27
[en] [jp]
Summary
A vulnerability has been found within the FTP client in AceFTP. When exploited, this vulnerability allows an anonymous attacker to write files to arbitrary locations on a Windows user's system.
Tested Versions
Details
This advisory discloses a vulnerability within the FTP client in AceFTP. When exploited, this vulnerability allows an anonymous attacker to write files to arbitrary locations on a Windows user's system.
The FTP client does not properly sanitise filenames containing directory traversal sequences (forward-slash) that are received from an FTP server in response to the LIST command.
An example of such a response from a malicious FTP server is shown below.
Response to LIST (forward-slash):
-rw-r--r-- 1 ftp ftp 20 Mar 01 05:37 /../../../../../../../../../testfile.txt\r\n
By tricking a user to download a directory from a malicious FTP server that contains files with fowward-slash directory traversal sequences in their filenames, it is possible for the attacker to write files to arbitrary locations on a user's system with privileges of that user. An attacker can potentially leverage this issue to write files into a user's Windows Startup folder and execute arbitrary code when the user logs on.
POC / Test Code
Please download the POC here and follow the instructions below.
Outlander S01e14 H264 !!install!! May 2026
This is the deep cut. This is The Search . For the uninitiated, Outlander Season 1, Episode 14 is titled "The Search." On paper, it sounds pastoral: Claire and a young Murtagh traverse the Highlands looking for a captured Jamie. In reality, it’s the calm-before-the-cataclysm. Episode 15 ( Wentworth Prison ) is the one that gets the trigger warnings, but Episode 14 is where the dread metastasizes.
But let’s stop for a moment. The string of characters— S01E14 —isn’t just an episode code. It’s a tombstone and a love letter. And the H264 part? That’s the quiet, efficient workhorse that makes sure every tear, every plaid weave, and every shadow in the Scottish Highlands cuts you just as deeply as it did in 2015. outlander s01e14 h264
If you’ve ever typed "Outlander S01E14 H264" into a search bar, you’re probably looking for one of two things: a specific file for your media server, or a technical confirmation that you’re about to watch a pristine copy of one of the most brutal, beautiful, and emotionally devastating hours of 2010s television. This is the deep cut
The definitive experience of is a high-bitrate H264 encode in its native 1080p, 23.976fps, with 5.1 AAC or AC3 audio. Why? Because that’s the master’s intended resolution. That’s the frame where Caitríona Balfe’s performance—the silent scream, the clenched fist, the lullaby sung into the void—is mapped pixel-for-pixel. In reality, it’s the calm-before-the-cataclysm
We watch Claire transform from a healer into a hunter. We watch her sing "The Boogie Woogie Bugle Boy" as a coded signal. We watch her use 20th-century grit in an 18th-century world. And all of this hinges on visual texture .
Patch / Workaround
Avoid downloading files/directories from untrusted FTP servers.
Disclosure Timeline
2008-06-15 - Vulnerability Discovered.
2008-06-16 - Vulnerability Details Sent to Vendor via online support form (no reply).
2008-06-18 - Vulnerability Details Sent to Vendor again via online support form (no reply).
2008-06-25 - Vulnerability Details Sent to Vendor again via online support form (no reply).
2008-06-27 - Public Release.