This article was previously published under Q231310
This article has been archived. It is offered "as is" and will no longer be updated.
Policy restrictions that prevent access to the hard disk may be bypassed if a user drags an image file (such as a .jpg or .bmp file) on a Web page to the Address bar. The user can then click the drop-down arrow on the Address bar and gain access to the root drive and all folders.
This problem has been corrected in Internet Explorer 5.5 Service Pack 1 (SP1). To obtain the latest version of Internet Explorer, visit the following Microsoft Web site: