CVE-2012-1216: Pbboard

Medium severity, CVSS 6.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Multiple cross-site request forgery (CSRF) vulnerabilities in admin.php in PBBoard 2.1.4 allow remote attackers to hijack the authentication of administrators for requests that (1) upload a file via an add action or (2) change the contents of a file via a dit action.

Affected products

  • Pbboard Pbboard: version 2.1.4 only

Published 2012-02-21. Last modified 2026-06-16.