AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2005-3745

MEDIUM · CVSS 4.3 EPSS 25.71%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2005-11-22 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 4.3. It affects Apache. Its EPSS score suggests a 25.7% probability of exploitation in the next 30 days. It may be remotely exploitable.

CVE
CVE-2005-3745
Severity
MEDIUM
CVSS
4.3
EPSS
25.71%
Apache

Original NVD Description

Cross-site scripting (XSS) vulnerability in Apache Struts 1.2.7, and possibly other versions allows remote attackers to inject arbitrary web script or HTML via the query string, which is not properly quoted or filtered when the request handler generates an error message.