Security Advisory
CVE-2011-5061
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
functions.php in WHMCompleteSolution (WHMCS) 4.0.x through 5.0.x allows remote attackers to trigger arbitrary code execution in the Smarty templating system by submitting a crafted ticket, related to improper handling of characters in the subject field.