tstisapi.dll in Pi3Web 1.0.1 web server allows remote attackers to determine the physical path of the server via a URL that requests a non-existent file.Referenceshttp://archives.neohapsis.com/archives/bugtraq/2001-02/0316.htmlhttp://www.securityfocus.com/bid/2381