Multiple SQL injection vulnerabilities in tiki-g-admin_processes.php in Tikiwiki 1.9.4 allow remote attackers to execute arbitrary SQL commands via the (1) pid and (2) where parameters.Referenceshttp://tikiwiki.cvs.sourceforge.net/tikiwiki/tiki/tiki-g-admin_processes.php?view=loghttps://exchange.xforce.ibmcloud.com/vulnerabilities/28869http://www.securityfocus.com/bid/19947http://securityreason.com/securityalert/1544http://www.hackers.ir/advisories/tikiwiki.htmlhttp://www.securityfocus.com/archive/1/445790/100/0/threaded