Medium severity5.4NVD Advisory· Published May 28, 2021· Updated Jun 17, 2026
CVE-2021-32540
CVE-2021-32540
Description
Add announcement function in the 101EIP system does not filter special characters, which allows authenticated users to inject JavaScript and perform a stored XSS attack.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- cpe:2.3:a:hundredplus:101eip:200925:*:*:*:*:*:*:*
- Hundred Plus/101EIPv5Range: RELEASE_200925
Patches
Vulnerability mechanics
References
1- www.twcert.org.tw/tw/cp-132-4756-981be-1.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.