SQL injection vulnerability in the Query Designer for Computer Associates (CA) Unicenter Asset Management (UAM) 4.0 allows remote attackers to execute arbitrary SQL via an imported file.
http://supportconnect.ca.com/sc/solcenter/solresults.jsp?aparno=Qo64323