guestbook.cgi in cPanel 5.0 allows remote attackers to execute arbitrary commands via the template parameter.
https://github.com/krlabs/cpanel-vulnerabilities
https://exchange.xforce.ibmcloud.com/vulnerabilities/11356
http://archives.neohapsis.com/archives/vulnwatch/2003-q1/0087.html