SQL injection vulnerability in the management application in Cisco Unified Operations Manager allows remote authenticated users to execute arbitrary SQL commands via an entry field, aka Bug ID CSCud80179.
http://tools.cisco.com/security/center/viewAlert.x?alertId=30153
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-3437