CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.3. It affects Apache. Its EPSS score suggests a 25.7% probability of exploitation in the next 30 days. It may be remotely exploitable.
CVE
CVE-2005-3745
Severity
MEDIUM
CVSS
4.3
EPSS
25.71%
Apache
Original NVD Description
Cross-site scripting (XSS) vulnerability in Apache Struts 1.2.7, and possibly other versions allows remote attackers to inject arbitrary web script or HTML via the query string, which is not properly quoted or filtered when the request handler generates an error message.