CVE-2012-2080

Cross-site request forgery (CSRF) vulnerability in the Node Limit Number module before 6.x-1.2 for Drupal allows remote attackers to hijack the authentication of users with the administer node limitnumber permission for requests that delete limits.
CSRF
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 57%
VendorProductVersion
node_limit_number_projectnode_limitnumber
𝑥
≤ 6.x-1.1
node_limit_number_projectnode_limitnumber
5.x-1.0:x
node_limit_number_projectnode_limitnumber
5.x-1.1-1:x
node_limit_number_projectnode_limitnumber
5.x-1.1-2:x
node_limit_number_projectnode_limitnumber
5.x-1.1-3:x
node_limit_number_projectnode_limitnumber
5.x-1.4:x
node_limit_number_projectnode_limitnumber
5.x-1.x:x
node_limit_number_projectnode_limitnumber
6.x-1.0:x
node_limit_number_projectnode_limitnumber
6.x-2.0:x
node_limit_number_projectnode_limitnumber
6.x-2.0:x
node_limit_number_projectnode_limitnumber
6.x-2.0:x
node_limit_number_projectnode_limitnumber
6.x-2.0:x
node_limit_number_projectnode_limitnumber
6.x-2.x:x
𝑥
= Vulnerable software versions