SQL injection vulnerability in the search module in Edgewall Trac before 0.9.2 allows remote attackers to execute arbitrary SQL commands via unknown vectors.
http://www.vupen.com/english/advisories/2005/2766
http://www.debian.org/security/2006/dsa-951
http://securityreason.com/securityalert/222
http://secunia.com/advisories/18555
http://secunia.com/advisories/17894
http://projects.edgewall.com/trac/wiki/ChangeLog
http://lists.edgewall.com/archive/trac/2005-December/005777.html