functions.php in WHMCompleteSolution (WHMCS) 4.0.x up to and including 5.0.x allows remote malicious users to trigger arbitrary code execution in the Smarty templating system by submitting a crafted ticket, related to improper handling of characters in the subject field.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
whmcs whmcompletesolution 4.3.1 |
||
whmcs whmcompletesolution 4.1.2 |
||
whmcs whmcompletesolution 4.2.0 |
||
whmcs whmcompletesolution 4.2.1 |
||
whmcs whmcompletesolution 5.0.3 |
||
whmcs whmcompletesolution 5.0.2 |
||
whmcs whmcompletesolution 5.0.1 |
||
whmcs whmcompletesolution 5.0.0 |
||
whmcs whmcompletesolution 4.3.0 |
||
whmcs whmcompletesolution 4.0.2 |
||
whmcs whmcompletesolution 4.4.2 |
||
whmcs whmcompletesolution 4.4.0 |
||
whmcs whmcompletesolution 4.1.1 |
||
whmcs whmcompletesolution 4.0.0 |
||
whmcs whmcompletesolution 4.5.2 |
||
whmcs whmcompletesolution 4.5.1 |
||
whmcs whmcompletesolution 4.0.1 |
||
whmcs whmcompletesolution 4.1.0 |
||
whmcs whmcompletesolution 4.5.0 |
||
whmcs whmcompletesolution 4.4.1 |