SQL injection vulnerability in view_group.asp in Digital Interchange Document Library 5.8.5 allows remote attackers to execute arbitrary SQL commands via the intGroupID parameter.
https://exchange.xforce.ibmcloud.com/vulnerabilities/59397
http://www.vupen.com/english/advisories/2010/1461