CVE-2014-5073: Vmturbo Operations Manager

High severity, CVSS 7.5. EPSS: 76.3% chance of exploitation in the next 30 days.

vmtadmin.cgi in VMTurbo Operations Manager before 4.6 build 28657 allows remote attackers to execute arbitrary commands via shell metacharacters in the fileDate parameter in a DOWN call.

Affected products

  • Vmturbo Operations Manager: up to and including 4.6; version 4.0 only; version 4.5 only

Published 2014-08-29. Last modified 2026-06-17.