Vim versions greater than and equal to 7.2.a.013 suffer from an arbitrary code execution vulnerability using the shellescape() function.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/68245/vim72b-exec.txt
Source: https://packetstormsecurity.com/files/68245/vim72b-exec.txt.html