Cross-site request forgery (CSRF) vulnerability in PunBB before 1.2.17 allows remote attackers to hijack the authentication of unspecified users for requests related to a logout, probably a forced logout.
https://euvd.enisa.europa.eu/vulnerability/EUVD-2008-7199
http://punbb.informer.com/download/changelogs/1.2.16_to_1.2.17.txt