license.php in system-portal before 1.6.2 in op5 Monitor and op5 Appliance before 5.5.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the timestamp parameter for an install action.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.865
EPSS Ranking 99.3%