{ "id": "CVE-2002-2009", "sourceIdentifier": "cve@mitre.org", "published": "2002-12-31T05:00:00.000", "lastModified": "2019-03-25T11:29:02.580", "vulnStatus": "Modified", "descriptions": [ { "lang": "en", "value": "Apache Tomcat 4.0.1 allows remote attackers to obtain the web root path via HTTP requests for JSP files preceded by (1) +/, (2) >/, (3)