Stvs maintains a focused provisioning product that exhibits a durable pattern of application-layer security issues centered on cross-site request forgery and path-traversal vulnerabilities. Current severity, exploitation, and exposure figures are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Stvs over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-47723HIGH STVS ProVision 5.9.10 contains a cross-site request forgery vulnerability that allows attackers to perform actions with administrative privileges by exploiting unvalidated HTTP req | Dec 9, 2025 | 8.8 | 27 | NO | NO |
CVE-2021-47724MEDIUM STVS ProVision 5.9.10 contains a path traversal vulnerability that allows authenticated attackers to access arbitrary files by manipulating the files parameter in the archive downl | Dec 9, 2025 | 6.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Stvs.
Media articles that mention a CVE ID that affects a product developed by Stvs — matched by CVE ID, not by vendor name.