SQL injection vulnerability in the abget_admin function in includes/nukesentinel.php in NukeSentinel 2.5.12 allows remote attackers to execute arbitrary SQL commands via base64-encoded data in an admin cookie.
http://www.waraxe.us/advisory-58.html
http://www.vupen.com/english/advisories/2007/3308
http://www.securityfocus.com/bid/25830
http://www.securityfocus.com/archive/1/480846/100/0/threaded