Sawmill before 7.1.6 allows remote attackers to bypass authentication and (1) gain administrative privileges or (2) add a license.
https://exchange.xforce.ibmcloud.com/vulnerabilities/20880
https://exchange.xforce.ibmcloud.com/vulnerabilities/20879
http://www.sawmill.net/version_history7.html
http://www.networksecurity.fi/advisories/sawmill-admin.html