tstisapi.dll in Pi3Web 1.0.1 web server allows remote attackers to determine the physical path of the server via a URL that requests a non-existent file.
https://euvd.enisa.europa.eu/vulnerability/EUVD-2001-0303
http://www.securityfocus.com/bid/2381
http://archives.neohapsis.com/archives/bugtraq/2001-02/0316.html