Interspire ActiveKB 1.5 and earlier allows remote attackers to gain privileges by setting the auth cookie to true when accessing unspecified scripts in /admin.Referenceshttp://secunia.com/advisories/30265http://www.securitytracker.com/id?1020035https://www.exploit-db.com/exploits/5616https://exchange.xforce.ibmcloud.com/vulnerabilities/42427http://www.securityfocus.com/bid/29226