AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2005-4357

LOW · CVSS 2.6 EPSS 1.86%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2005-12-20 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2005-4357
Severity
LOW
CVSS
2.6
EPSS
1.86%
Java

Original NVD Description

Cross-site scripting (XSS) vulnerability in phpBB 2.0.18, when "Allowed HTML tags" is enabled, allows remote attackers to inject arbitrary Javascript via a permitted HTML tag with " (quote) characters and active attributes such as onmouseover.