CVE-2002-2008

Apache Tomcat 4.0.3 for Windows allows remote attackers to obtain the web root path via an HTTP request for a resource that does not exist, such as lpt9, which leaks the information in an error message.

Scoring

CVSS base score
0.36
EPSS probability
7.15%
Published
2005-07-14
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs