Unrated severityNVD Advisory· Published Aug 29, 2014· Updated May 6, 2026
CVE-2014-5073
CVE-2014-5073
Description
vmtadmin.cgi in VMTurbo Operations Manager before 4.6 build 28657 allows remote attackers to execute arbitrary commands via shell metacharacters in the fileDate parameter in a DOWN call.
Affected products
4cpe:2.3:a:vmturbo:operations_manager:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:vmturbo:operations_manager:*:*:*:*:*:*:*:*range: <=4.6
- cpe:2.3:a:vmturbo:operations_manager:4.0:*:*:*:*:*:*:*
- cpe:2.3:a:vmturbo:operations_manager:4.5:-:*:*:*:*:*:*
- cpe:2.3:a:vmturbo:operations_manager:4.5:1:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- disse.cting.org/2014/07/30/vmturbo-operation-manager-remote-command-execution/nvdExploit
- packetstormsecurity.com/files/127864/VMTurbo-Operations-Manager-4.6-vmtadmin.cgi-Remote-Command-Execution.htmlnvdExploit
- www.exploit-db.com/exploits/34335nvdExploit
- www.securityfocus.com/bid/69225nvdExploit
- secunia.com/advisories/58880nvd
- secunia.com/secunia_research/2014-8/nvd
- www.osvdb.org/109572nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/95319nvd
News mentions
0No linked articles in our index yet.