Nexus Concepts Dev Hound 2.24 and earlier allows remote attackers to obtain the installation path via a URL containing a non-existent .dll file.
http://www.vupen.com/english/advisories/2005/3047
http://www.exploitlabs.com/files/advisories/EXPL-A-2005-017-devhound.txt