ZeroShell 1.0beta11 and earlier via cgi-bin/kerbynet allows remote attackers to execute arbitrary commands through shell metacharacters in the type parameter in a NoAuthREQ x509List action.
View the template here CVE-2009-0545.yaml
References:
http://www.ikkisoft.com/stuff/LC-2009-01.txt