CVE-2007-3643
admin/index.php in AV Arcade 2.1b grants administrative privileges when the ava_userid cookie value is 1, which allows remote attackers to perform certain administrative actions.
Date published : 2007-07-09
http://www.securityfocus.com/bid/24736/info
http://www.securityfocus.com/archive/1/472666/100/0/threaded