BroadVision One-To-One Enterprise suffers from a security vulnerability that reveals server information. When requesting a non-existent file, the server will reveal the physical path of server files.
Credit:
The information has been provided by benjurry.