You can enter any HQL into most of the search fields and get custom content. It doesn't appear as though you could do much dmg though as you can't use semicolons in HQL.
Fixed in build 20121123-1253. The backend search now uses the JPA Criteria API to perform all queries. This binds parameters so that they are parsed as a value and won't try and parse the entered values as SQL.