6.8 Medium
CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
0.967 High
EPSS
Percentile
99.7%
CVE: CVE-2012-2080
The Node Limit Number module enables an administrator to place limits on how many nodes may be created by each user.
Node Limit Number does not protect the delete URL against Cross Site Request Forgery attacks, allowing a malicious user to trick someone with “administer node limitnumber” permissions to unknowingly remove existing limits.
Drupal core is not affected. If you do not use the contributed Node Limit Number module, there is nothing you need to do.
Install the latest version:
Also see the Node Limit Number project page.