SuiteCRM v7.11.23 exists to allow remote code execution via a crafted payload injected into the FirstName text field.
salesagility suitecrm 7.11.23