WHM AutoPilot 2.4.6.5 and earlier allows remote attackers to gain sensitive information via phpinfo, which reveals php settings.
https://exchange.xforce.ibmcloud.com/vulnerabilities/18701
http://www.whmautopilot.com/forum/lofiversion/index.php/t6785.html
http://secunia.com/advisories/13673