Description
Apache Tomcat 4.0.3 for Windows allows remote attackers to obtain the web root path via an HTTP request for a resource that does not exist, such as lpt9, which leaks the information in an error message.
Remediation
References
Related Vulnerabilities
WordPress CVE-2011-3125 Vulnerability (CVE-2011-3125)
MongoDb Improper Handling of Exceptional Conditions Vulnerability (CVE-2020-7923)
Python Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2021-3426)
WordPress Plugin Translate Multilingual sites-TranslatePress Cross-Site Scripting (2.0.8)