[] NeoSense

Apache Tomcat 3.2.3/3.2.4 - 'RealPath.jsp' Information Disclosuree

Author: Richard Brain
type: remote
platform: multiple
port: 
date_added: 2002-05-29 
date_updated: 2017-07-11 
verified: 1 
codes: CVE-2002-2007;OSVDB-13304 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/4878/info

Apache Tomcat is a freely available, open source web server maintained by the Apache Foundation.

Under some circumstances, Tomcat may yield sensitive information about the web server configuration. When the realPath.jsp page is accessed, it may leak information. Upon being accessed, the realPath.jsp page will display the web root directory of the Tomcat implementation.

http://example.com/test/realPath.jsp