op5config/welcome in system-op5config before 2.0.3 in op5 Monitor and op5 Appliance before 5.5.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the password parameter.
https://bugs.op5.com/view.php?id=5094
http://www.op5.com/news/support-news/fixed-vulnerabilities-op5-monitor-op5-appliance/