Insecure Direct Object Reference vulnerability in WHMCS module SolusVM 1 4.1.2 allows an attacker to change the password and hostname of other customer servers without authorization.Referenceshttp://soluslabs.comhttp://solusvm.comhttps://gist.github.com/mr404ntf/9c8728ee8f35d9744feec3828df1085d