Unrated severityNVD Advisory· Published Dec 9, 2025· Updated Apr 7, 2026
STVS ProVision Cross-Site Request Forgery (Add Admin)
CVE-2021-47723
Description
STVS ProVision 5.9.10 contains a cross-site request forgery vulnerability that allows attackers to perform actions with administrative privileges by exploiting unvalidated HTTP requests. Attackers can visit malicious web sites to trigger the forge request, allowing them to create new admin users.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- STVS SA/STVS ProVisionv5Range: 5.9.10 (build 2885-3a8219a)
Patches
Vulnerability mechanics
References
4- www.exploit-db.com/exploits/49482mitreexploit
- www.vulncheck.com/advisories/stvs-provision-cross-site-request-forgery-add-adminmitrethird-party-advisory
- www.zeroscience.mk/en/vulnerabilities/ZSL-2021-5625.phpmitrethird-party-advisory
- www.stvs.chmitreproduct
News mentions
0No linked articles in our index yet.