Description
Apache Tomcat 4.0.3 for Windows allows remote attackers to obtain the web root path via an HTTP request for a resource that does not exist, such as lpt9, which leaks the information in an error message.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2009-1965 Vulnerability (CVE-2009-1965)
MySQL CVE-2018-3060 Vulnerability (CVE-2018-3060)
Envoy Proxy Improper Certificate Validation Vulnerability (CVE-2022-21654)
WordPress Plugin Availability Calendar Cross-Site Scripting (1.2.1)
ATutor Weak Password Recovery Mechanism for Forgotten Password Vulnerability (CVE-2021-43498)