Medium severity5.4NVD Advisory· Published May 28, 2021· Updated Jun 17, 2026
CVE-2021-32539
CVE-2021-32539
Description
Add event in calendar function in the 101EIP system does not filter special characters in specific fields, which allows remote authenticated users to inject JavaScript and perform a stored XSS attack.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- cpe:2.3:a:hundredplus:101eip:200925:*:*:*:*:*:*:*
- Hundred Plus/101EIPv5Range: RELEASE_200925
Patches
Vulnerability mechanics
References
1- www.twcert.org.tw/tw/cp-132-4755-bd590-1.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.