CVE-2012-2080

Cross-site request forgery (CSRF) vulnerability in the Node Limit Number module before 6.x-1.2 for Drupal allows remote attackers to hijack the authentication of users with the administer node limitnumber permission for requests that delete limits.
CSRF
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Affected Products (NVD)
VendorProductVersion
node_limit_number_projectnode_limitnumber
𝑥
≤ 6.x-1.1
node_limit_number_projectnode_limitnumber
5.x-1.0:x
node_limit_number_projectnode_limitnumber
5.x-1.1-1:x
node_limit_number_projectnode_limitnumber
5.x-1.1-2:x
node_limit_number_projectnode_limitnumber
5.x-1.1-3:x
node_limit_number_projectnode_limitnumber
5.x-1.4:x
node_limit_number_projectnode_limitnumber
5.x-1.x:x
node_limit_number_projectnode_limitnumber
6.x-1.0:x
node_limit_number_projectnode_limitnumber
6.x-2.0:x
node_limit_number_projectnode_limitnumber
6.x-2.0:x
node_limit_number_projectnode_limitnumber
6.x-2.0:x
node_limit_number_projectnode_limitnumber
6.x-2.0:x
node_limit_number_projectnode_limitnumber
6.x-2.x:x
𝑥
= Vulnerable software versions